Bookmark and Share

Information Security and Privacy Advisory Board (ISPAB)


The Information Security and Privacy Advisory Board (ISPAB) was originally created by the Computer Security Act of 1987 (P.L. 100-235) as the Computer System Security and Privacy Advisory Board. As a result of Public Law 107-347, The E-Government Act of 2002, Title III, The Federal Information Security Management Act of 2002, the Board's name was changed and its mandate was amended.


  • Identify emerging managerial, technical, administrative, and physical safeguard issues relative to information security and privacy;
  • Advise the National Institute of Standards and Technology (NIST), the Secretary of Commerce and the Director of the Office of Management and Budget on information security and privacy issues pertaining to Federal Government information systems, including thorough review of proposed standards and guidelines developed by NIST.
  • Annually report its findings to the Secretary of Commerce, the Director of the Office of Management and Budget, the Director of the National Security Agency and the appropriate committees of the Congress.

The Board's authority does not extend to private sector systems or federal systems which process classified information.

The membership of the Board consists of twelve members and a Chairperson. The Director of NIST approves membership appointments and appoints the Chairperson. The Board meets quarterly throughout the year and all meetings are open to the public.


One of the major objectives and responsibilities of the Information Security and Privacy Advisory Board is to identify emerging managerial, technical, administrative, and physical safeguard issues relative to information security and privacy.

The Board will function solely as an advisory body, in accordance with the provisions of the Federal Advisory Committee Act.

End Date:


Lead Organizational Unit:



Ms. Annie Sokol

Mr. Matthew Scholl

Related Programs and Projects:

For more information regarding the Information Security and Privacy Advisory Board (ISPAB), please visit the Computer Security Resource Center (CSRC).


Annie Sokol
(301) 975-2006

100 Bureau Drive
M/S 7730
Gaithersburg, MD 20899-7730