This document summarizes guidelines from the National Institute of Standards and Technology (NIST) on security and privacy for public cloud computing. It discusses key aspects of cloud computing including deployment models (public, private, hybrid, community clouds), service models (SaaS, PaaS, IaaS), and the security challenges of outsourcing IT services to public clouds. The document stresses that while public clouds can reduce costs, organizations are still accountable for security and privacy and must provide oversight of cloud providers through governance, risk management, auditing, and ensuring compliance.