Skip to main content

๐Ÿ’ผ CM-7 (4) UNAUTHORIZED SOFTWARE | BLACKLISTING

  • Contextual name: ๐Ÿ’ผ CM-7 (4) UNAUTHORIZED SOFTWARE | BLACKLISTING
  • ID: /frameworks/nist-sp-800-53-r4/cm/07/04
  • Located in: ๐Ÿ’ผ CM-7 LEAST FUNCTIONALITY

Descriptionโ€‹

The organization: CM-7 (4)(a) Identifies [Assignment: organization-defined software programs not authorized to execute on the information system]; CM-7 (4)(b) Employs an allow-all, deny-by-exception policy to prohibit the execution of unauthorized software programs on the information system; and CM-7 (4)(c) Reviews and updates the list of unauthorized software programs [Assignment: organization-defined frequency].

Similarโ€‹

  • Internal
    • ID: dec-c-ee9a5f4c

Sub Sectionsโ€‹

SectionSub SectionsInternal RulesPoliciesFlags