(SCAP; see http://csrc.nist.gov/groups/SNS/cloud-computing/in-dex.html), which identifies a “suite of specifications for organizing and expressing security related information in standardized ways, as well as related reference data, such as identifiers for software flaws andsecurity configuration issues.”4 Itsapplication includes maintainingenterprise systems’ security. Interestingly, a major concern included in SCAP is the lack of interoper ability among systemlevel tools. It states that