Skip to main content

💼 ID.RA-09: The authenticity and integrity of hardware and software are assessed prior to acquisition and use

  • Contextual name: 💼 ID.RA-09: The authenticity and integrity of hardware and software are assessed prior to acquisition and use
  • ID: /frameworks/nist-csf-v2.0/id-ra/09
  • Located in: 💼 Risk Assessment (ID.RA)

Description

  1. Assess the authenticity and cybersecurity of critical technology products and services prior to acquisition and use

Similar

  • Sections
    • /frameworks/nist-csf-v1.1/pr-ds/08
    • /frameworks/nist-sp-800-53-r5/sa/04
    • /frameworks/nist-sp-800-53-r5/sa/05
    • /frameworks/nist-sp-800-53-r5/sa/10
    • /frameworks/nist-sp-800-53-r5/sa/11
    • /frameworks/nist-sp-800-53-r5/sa/15
    • /frameworks/nist-sp-800-53-r5/sa/17
    • /frameworks/nist-sp-800-53-r5/si/07
    • /frameworks/nist-sp-800-53-r5/sr/05
    • /frameworks/nist-sp-800-53-r5/sr/06
    • /frameworks/nist-sp-800-53-r5/sr/10
    • /frameworks/nist-sp-800-53-r5/sr/11

Similar Sections (Take Policies From)

SectionSub SectionsInternal RulesPoliciesFlags
💼 NIST CSF v1.1 → 💼 PR.DS-8: Integrity checking mechanisms are used to verify hardware integrity
💼 NIST SP 800-53 Revision 5 → 💼 SA-4 Acquisition Process12
💼 NIST SP 800-53 Revision 5 → 💼 SA-5 System Documentation5
💼 NIST SP 800-53 Revision 5 → 💼 SA-10 Developer Configuration Management73
💼 NIST SP 800-53 Revision 5 → 💼 SA-11 Developer Testing and Evaluation9
💼 NIST SP 800-53 Revision 5 → 💼 SA-15 Development Process, Standards, and Tools12
💼 NIST SP 800-53 Revision 5 → 💼 SA-17 Developer Security and Privacy Architecture and Design9
💼 NIST SP 800-53 Revision 5 → 💼 SI-7 Software, Firmware, and Information Integrity171943
💼 NIST SP 800-53 Revision 5 → 💼 SR-5 Acquisition Strategies, Tools, and Methods2
💼 NIST SP 800-53 Revision 5 → 💼 SR-6 Supplier Assessments and Reviews1
💼 NIST SP 800-53 Revision 5 → 💼 SR-10 Inspection of Systems or Components
💼 NIST SP 800-53 Revision 5 → 💼 SR-11 Component Authenticity3

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlags

Policies (4)

PolicyLogic CountFlags
📝 Google Cloud SQL Server Instance 3625 (trace flag) Database Flag is not set to on 🟢1🟢 x6
📝 Google Cloud SQL Server Instance external scripts enabled Database Flag is not set to off 🟢1🟢 x6
📝 Google Cloud SQL Server Instance user connections Database Flag is set to a limiting (other than 0) value 🟢1🟢 x6
📝 Google Cloud SQL Server Instance user options Database Flag is configured 🟢1🟢 x6