Skip to main content

💼 CM-11 User-installed Software (L)(M)(H)

  • ID: /frameworks/fedramp-high-security-controls/cm/11

Description

a. Establish [Assignment: organization-defined policies] governing the installation of software by users;

b. Enforce software installation policies through the following methods: [Assignment: organization-defined methods]; and

c. Monitor policy compliance [FedRAMP Assignment: Continuously (via CM-7 (5))].

Similar

  • Sections
    • /frameworks/nist-sp-800-53-r5/cm/11
  • Internal
    • ID: dec-c-cf200683

Similar Sections (Take Policies From)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 NIST SP 800-53 Revision 5 → 💼 CM-11 User-installed Software3no data

Similar Sections (Give Policies To)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 FedRAMP Low Security Controls → 💼 CM-11 User-installed Software (L)(M)(H)4no data
💼 FedRAMP Moderate Security Controls → 💼 CM-11 User-installed Software (L)(M)(H)4no data

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance

Policies (4)

PolicyLogic CountFlagsCompliance
🛡️ AWS RDS Instance Auto Minor Version Upgrade is not enabled🟠🟢1🟠 x1, 🟢 x6no data
🛡️ Azure App Service does not run the latest Java version🟢⚪🟢 x2, ⚪ x1no data
🛡️ Azure App Service does not run the latest PHP version🟢⚪🟢 x2, ⚪ x1no data
🛡️ Azure App Service does not run the latest Python version🟢⚪🟢 x2, ⚪ x1no data

Internal Rules

RulePoliciesFlags
✉️ dec-x-879aa9961
✉️ dec-x-215302da1
✉️ dec-x-a20e54a01
✉️ dec-x-f82b98491