💼 AC-20(1) Use of External Systems | Limits on Authorized Use
- Contextual name: 💼 AC-20(1) Use of External Systems | Limits on Authorized Use
- ID:
/frameworks/nist-sp-800-53-r5/ac/20/01
- Located in: 💼 AC-20 Use of External Systems
Description​
Permit authorized individuals to use an external system to access the system or to process, store, or transmit organization-controlled information only after:
(a) Verification of the implementation of controls on the external system as specified in the organization’s security and privacy policies and security and privacy plans; or
(b) Retention of approved system connection or processing agreements with the organizational entity hosting the external system.
Similar​
Similar Sections (Give Policies To)​
Sub Sections​
Section | Sub Sections | Internal Rules | Policies | Flags |
---|