SecFrame Explorer
controls.intelligence
SearchPricing
AI lookups:3/3left
3/3
Sign in
FrameworksNIST 800-53Assessment, Authorization, and Monitoring
// Level 3 · Controls

Assessment, Authorization, and Monitoring

NIST SP 800-53 Rev 5 Assessment, Authorization, and Monitoring controls.

CA-01Medium

Policy and Procedures

Develop, document, and disseminate to [parameter]:

CA-02Medium

Control Assessments

Select the appropriate assessor or assessment team for the type of assessment to be conducted;

CA-03Medium

Information Exchange

Approve and manage the exchange of information between the system and other systems using [parameter];

CA-04Medium

Security Certification

Security Certification

CA-05Medium

Plan of Action and Milestones

Develop a plan of action and milestones for the system to document the planned remediation actions of the organization to correct weaknesses or deficiencies noted during the assessment of the controls and to reduce or eliminate known vulnerabilities in the system; and

CA-06Medium

Authorization

Assign a senior official as the authorizing official for the system;

CA-07Medium

Continuous Monitoring

Develop a system-level continuous monitoring strategy and implement continuous monitoring in accordance with the organization-level continuous monitoring strategy that includes:

CA-08Medium

Penetration Testing

Conduct penetration testing [parameter] on [parameter].

CA-09Medium

Internal System Connections

Authorize internal connections of [parameter] to the system;

// SecFrame Explorer — security frameworks, decoded
TermsPricingRefundsPrivacy·Powered by arnav.au