Skip to main content

💼 AC-20(1) Use of External Systems | Limits on Authorized Use

  • Contextual name: 💼 AC-20(1) Use of External Systems | Limits on Authorized Use
  • ID: /frameworks/nist-sp-800-53-r5/ac/20/01
  • Located in: 💼 AC-20 Use of External Systems

Description​

Permit authorized individuals to use an external system to access the system or to process, store, or transmit organization-controlled information only after: (a) Verification of the implementation of controls on the external system as specified in the organization’s security and privacy policies and security and privacy plans; or (b) Retention of approved system connection or processing agreements with the organizational entity hosting the external system.

Similar​

  • Internal
    • ID: dec-c-dff7dac2

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
💼 FedRAMP High Security Controls → 💼 AC-20(1) Limits on Authorized Use (M)(H)

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags