Skip to main content

💼 SA-8 Security and Privacy Engineering Principles (L)(M)(H)

  • ID: /frameworks/fedramp-low-security-controls/sa/08

Description

Apply the following systems security and privacy engineering principles in the specification, design, development, implementation, and modification of the system and system components: [Assignment: organization-defined systems security and privacy engineering principles].

Similar

  • Sections
    • /frameworks/nist-sp-800-53-r5/sa/08
    • /frameworks/fedramp-high-security-controls/sa/08
  • Internal
    • ID: dec-c-7656969f

Similar Sections (Take Policies From)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 FedRAMP High Security Controls → 💼 SA-8 Security and Privacy Engineering Principles (L)(M)(H)6no data
💼 NIST SP 800-53 Revision 5 → 💼 SA-8 Security and Privacy Engineering Principles338no data

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance

Policies (6)

PolicyLogic CountFlagsCompliance
🛡️ Google API Key is not restricted for unused APIs🟢1🟢 x6no data
🛡️ Google API Key is not rotated every 90 days🟢1🟢 x6no data
🛡️ Google Cloud SQL Server Instance 3625 (trace flag) Database Flag is not set to on🟢1🟢 x6no data
🛡️ Google Cloud SQL Server Instance user connections Database Flag is set to a limiting (other than 0) value🟢1🟢 x6no data
🛡️ Google Cloud SQL Server Instance user options Database Flag is configured🟢1🟢 x6no data
🛡️ Google Project has API Keys🟢1🟠 x1, 🟢 x5no data