We are aware of the issue with the badge emails resending to everyone, we apologise for the inconvenience - learn more here.

Forum Discussion

osiabanis's avatar
osiabanis
New member | Level 2
2 years ago

Is uploading and downloading files to and from Dropbox NIST compliant?

Hi there, 

 

We are exploring the option of collaborating through Dropbox with our client. They have the requirement that the tool we use is NIST compliant. I saw on your website that Dropbox files at rest are encrypted using 256-bit Advanced Encryption Standard (AES), which is NIST compliant. On the other hand, Dropbox files in transit use Secure Sockets Layer (SSL)/Transport Layer Security (TLS), and your SSL/TSL servers create a secure tunnel protected by 128-bit or higher Advanced Encryption Standard (AES) encryption, which is also NIST compliant (but some versions of SSL/TLS are not). Can you help me understand if uploading and downloading files to and from Dropbox is NIST compliant? 

 

Thanks! Your help is much appreciated.

Ourania

  • Hey osiabanis, thanks for taking the time to post here.

     

    Dropbox is NIST 800-171 compliant, which means it should cover (or even exceed) the practical requirements customers have. 

     

    The NIST SP 800-171 R2 report for Dropbox Standard, Advanced, Enterprise and Education is integrated into the SOC 2 report, which is available upon request through our sales team or (for existing Dropbox Team customers) support.

     

    Note: Dropbox Paper is not included in the scope of the NIST SP 800-171 R2 report. 

     

    Thanks!

  • Hannah's avatar
    Hannah
    Icon for Dropbox Staff rankDropbox Staff

    Hey osiabanis, thanks for taking the time to post here.

     

    Dropbox is NIST 800-171 compliant, which means it should cover (or even exceed) the practical requirements customers have. 

     

    The NIST SP 800-171 R2 report for Dropbox Standard, Advanced, Enterprise and Education is integrated into the SOC 2 report, which is available upon request through our sales team or (for existing Dropbox Team customers) support.

     

    Note: Dropbox Paper is not included in the scope of the NIST SP 800-171 R2 report. 

     

    Thanks!

About Security and Permissions

Start a discussion in the Dropbox Community forum to get help with your account security and permissions. Find support from Community members.

Need more support

If you need more help you can view your support options (expected response time for an email or ticket is 24 hours), or contact us on X or Facebook.

For more info on available support options for your Dropbox plan, see this article.

If you found the answer to your question in this Community thread, please 'like' the post to say thanks and to let us know it was useful!