Skip to main content

๐Ÿ’ผ System and Services Acquisition

  • Contextual name: ๐Ÿ’ผ System and Services Acquisition
  • ID: /frameworks/fedramp-moderate-security-controls/sa
  • Located in: ๐Ÿ’ผ FedRAMP Moderate Security Controls

Descriptionโ€‹

Empty...

Similarโ€‹

  • Internal
    • ID: dec-b-0cf05fe0

Sub Sectionsโ€‹

SectionSub SectionsInternal RulesPoliciesFlags
๐Ÿ’ผ SA-1 Policy and Procedures (L)(M)(H)
๐Ÿ’ผ SA-2 Allocation of Resources (L)(M)(H)
๐Ÿ’ผ SA-3 System Development Life Cycle (L)(M)(H)
๐Ÿ’ผ SA-4 Acquisition Process (L)(M)(H)4
ย ย ย ย ๐Ÿ’ผ SA-4(1) Functional Properties of Controls (M)(H)
ย ย ย ย ๐Ÿ’ผ SA-4(2) Design and Implementation Information for Controls (M)(H)
ย ย ย ย ๐Ÿ’ผ SA-4(9) Functions, Ports, Protocols, and Services in Use (M)(H)
ย ย ย ย ๐Ÿ’ผ SA-4(10) Use of Approved PIV Products (L)(M)(H)
๐Ÿ’ผ SA-5 System Documentation (L)(M)(H)
๐Ÿ’ผ SA-8 Security and Privacy Engineering Principles (L)(M)(H)
๐Ÿ’ผ SA-9 External System Services (L)(M)(H)3
ย ย ย ย ๐Ÿ’ผ SA-9(1) Risk Assessments and Organizational Approvals (M)(H)
ย ย ย ย ๐Ÿ’ผ SA-9(2) Identification of Functions, Ports, Protocols, and Services (M)(H)
ย ย ย ย ๐Ÿ’ผ SA-9(5) Processing, Storage, and Service Location (M)(H)1
๐Ÿ’ผ SA-10 Developer Configuration Management (M)(H)
๐Ÿ’ผ SA-11 Developer Testing and Evaluation (M)(H)2
ย ย ย ย ๐Ÿ’ผ SA-11(1) Static Code Analysis (M)(H)
ย ย ย ย ๐Ÿ’ผ SA-11(2) Threat Modeling and Vulnerability Analyses (M)(H)
๐Ÿ’ผ SA-15 Development Process, Standards, and Tools (M)(H)1
ย ย ย ย ๐Ÿ’ผ SA-15(3) Criticality Analysis (M)(H)
๐Ÿ’ผ SA-22 Unsupported System Components (L)(M)(H)