Skip to main content

πŸ’Ό CM-7(5) Authorized Software β€” Allow-by-exception (M)(H)

  • Contextual name: πŸ’Ό CM-7(5) Authorized Software β€” Allow-by-exception (M)(H)
  • ID: /frameworks/fedramp-moderate-security-controls/cm/07/05
  • Located in: πŸ’Ό CM-7 Least Functionality (L)(M)(H)

Description​

(a) Identify [Assignment: organization-defined software programs authorized to execute on the system];

(b) Employ a deny-all, permit-by-exception policy to allow the execution of authorized software programs on the system; and

(c) Review and update the list of authorized software programs [FedRAMP Assignment: at least quarterly or when there is a change].

Similar​

  • Sections
    • /frameworks/fedramp-high-security-controls/cm/07/05
  • Internal
    • ID: dec-c-322fd20e

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό FedRAMP High Security Controls β†’ πŸ’Ό CM-7(5) Authorized Software β€” Allow-by-exception (M)(H)

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags