💼 SI-3 Malicious Code Protection (L)(M)(H)
- Contextual name: 💼 SI-3 Malicious Code Protection (L)(M)(H)
- ID:
/frameworks/fedramp-high-security-controls/si/03
- Located in: 💼 System and Information Integrity
Description
a. Implement [FedRAMP Assignment: signature based and non-signature based] malicious code protection mechanisms at system entry and exit points to detect and eradicate malicious code;
b. Automatically update malicious code protection mechanisms as new releases are available in accordance with organizational configuration management policy and procedures;
c. Configure malicious code protection mechanisms to:
-
Perform periodic scans of the system [FedRAMP Assignment: at least weekly] and real-time scans of files from external sources at [FedRAMP Assignment: to include endpoints and network entry and exit points] as the files are downloaded, opened, or executed in accordance with organizational policy; and
-
[FedRAMP Assignment: to include blocking and quarantining malicious code] and send alert to [FedRAMP Assignment; administrator or defined security personnel near-realtime] in response to malicious code detection; and
d. Address the receipt of false positives during malicious code detection and eradication and the resulting potential impact on the availability of the system.
Similar
- Sections
/frameworks/nist-sp-800-53-r5/si/03
- Internal
- ID:
dec-c-5793a535
- ID:
Similar Sections (Take Policies From)
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
💼 NIST SP 800-53 Revision 5 → 💼 SI-3 Malicious Code Protection | 10 | 5 |
Similar Sections (Give Policies To)
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
💼 FedRAMP Low Security Controls → 💼 SI-3 Malicious Code Protection (L)(M)(H) | 7 | |||
💼 FedRAMP Moderate Security Controls → 💼 SI-3 Malicious Code Protection (L)(M)(H) | 7 |
Sub Sections
Section | Sub Sections | Internal Rules | Policies | Flags |
---|
Policies (7)
Internal Rules
Rule | Policies | Flags |
---|---|---|
✉️ dec-x-1a2f6279 | 1 | |
✉️ dec-x-9f7d853f | 1 | |
✉️ dec-x-52ac4ac0 | 1 | |
✉️ dec-x-8535d1ff | 1 | |
✉️ dec-x-a00b4ec9 | 1 | |
✉️ dec-x-a0471977 | 1 | |
✉️ dec-x-fafadacd | 1 |