💼 AC-4 INFORMATION FLOW ENFORCEMENT
- Contextual name: 💼 AC-4 INFORMATION FLOW ENFORCEMENT
- ID:
/frameworks/nist-sp-800-53-r4/ac/04
- Located in: 💼 AC ACCESS CONTROL
Description​
The information system enforces approved authorizations for controlling the flow of information within the system and between interconnected systems based on [Assignment: organization-defined information flow control policies].
Similar​
- Internal
- ID:
dec-c-7e6eca71
- ID:
Similar Sections (Give Policies To)​
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
💼 NIST CSF v1.1 → 💼 DE.AE-1: A baseline of network operations and expected data flows for users and systems is established and managed | 10 | 14 | ||
💼 NIST CSF v1.1 → 💼 ID.AM-3: Organizational communication and data flows are mapped | 4 | 7 | ||
💼 NIST CSF v1.1 → 💼 PR.AC-5: Network integrity is protected (e.g., network segregation, network segmentation) | 10 | 22 | ||
💼 NIST CSF v1.1 → 💼 PR.DS-5: Protections against data leaks are implemented | 47 | 66 | ||
💼 NIST CSF v1.1 → 💼 PR.PT-4: Communications and control networks are protected | 10 | 22 |