πΌ SA-5 System Documentation (L)(M)(H)
- Contextual name: πΌ SA-5 System Documentation (L)(M)(H)
- ID:
/frameworks/fedramp-high-security-controls/sa/05
- Located in: πΌ System and Services Acquisition
Descriptionβ
a. Obtain or develop administrator documentation for the system, system component, or system service that describes:
-
Secure configuration, installation, and operation of the system, component, or service;
-
Effective use and maintenance of security and privacy functions and mechanisms; and
-
Known vulnerabilities regarding configuration and use of administrative or privileged functions;
b. Obtain or develop user documentation for the system, system component, or system service that describes:
-
User-accessible security and privacy functions and mechanisms and how to effectively use those functions and mechanisms;
-
Methods for user interaction, which enables individuals to use the system, component, or service in a more secure manner and protect individual privacy; and
-
User responsibilities in maintaining the security of the system, component, or service and privacy of individuals;
c. Document attempts to obtain system, system component, or system service documentation when such documentation is either unavailable or nonexistent and take [Assignment: organization-defined actions] in response; and
d. Distribute documentation to [FedRAMP Assignment: at a minimum, the ISSO (or similar role within the organization)].
Similarβ
- Sections
/frameworks/nist-sp-800-53-r5/sa/05
- Internal
- ID:
dec-c-de10555b
- ID:
Similar Sections (Take Policies From)β
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
πΌ NIST SP 800-53 Revision 5 β πΌ SA-5 System Documentation | 5 |
Similar Sections (Give Policies To)β
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
πΌ FedRAMP Low Security Controls β πΌ SA-5 System Documentation (L)(M)(H) | ||||
πΌ FedRAMP Moderate Security Controls β πΌ SA-5 System Documentation (L)(M)(H) |
Sub Sectionsβ
Section | Sub Sections | Internal Rules | Policies | Flags |
---|