Skip to main content

πŸ’Ό SR-11 Component Authenticity (L)(M)(H)

  • Contextual name: πŸ’Ό SR-11 Component Authenticity (L)(M)(H)
  • ID: /frameworks/fedramp-low-security-controls/sr/11
  • Located in: πŸ’Ό Supply Chain Risk Management

Description​

a. Develop and implement anti-counterfeit policy and procedures that include the means to detect and prevent counterfeit components from entering the system; and

b. Report counterfeit system components to [Selection (one-or-more): source of counterfeit component; [Assignment: organization-defined external reporting organizations]; [Assignment: organization-defined personnel or roles]].

SR-11 Additional FedRAMP Requirements and Guidance:

Requirement: CSOs must ensure that their supply chain vendors provide authenticity of software and patches and the vendor must have a plan to protect the development pipeline.

Similar​

  • Sections
    • /frameworks/nist-sp-800-53-r5/sr/11
    • /frameworks/fedramp-high-security-controls/sr/11
  • Internal
    • ID: dec-c-aa004b53

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό FedRAMP High Security Controls β†’ πŸ’Ό SR-11 Component Authenticity (L)(M)(H)2
πŸ’Ό NIST SP 800-53 Revision 5 β†’ πŸ’Ό SR-11 Component Authenticity3

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό SR-11(1) Anti-counterfeit Training (L)(M)(H)
πŸ’Ό SR-11(2) Configuration Control for Component Service and Repair (L)(M)(H)