Skip to main content

💼 CM-11 USER-INSTALLED SOFTWARE

  • ID: /frameworks/nist-sp-800-53-r4/cm/11

Description​

The organization: CM-11a. Establishes [Assignment: organization-defined policies] governing the installation of software by users; CM-11b. Enforces software installation policies through [Assignment: organization-defined methods]; and CM-11c. Monitors policy compliance at [Assignment: organization-defined frequency].

Similar​

  • Internal
    • ID: dec-c-793a128b

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 NIST CSF v1.1 → 💼 DE.CM-3: Personnel activity is monitored to detect potential cybersecurity events2026no data

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CM-11 (1) ALERTS FOR UNAUTHORIZED INSTALLATIONSno data
💼 CM-11 (2) PROHIBIT INSTALLATION WITHOUT PRIVILEGED STATUSno data