Skip to main content

💼 CA-5 Plan of Action and Milestones

Description​

a. Develop a plan of action and milestones for the system to document the planned remediation actions of the organization to correct weaknesses or deficiencies noted during the assessment of the controls and to reduce or eliminate known vulnerabilities in the system; and b. Update existing plan of action and milestones [Assignment: organization-defined frequency] based on the findings from control assessments, independent audits or reviews, and continuous monitoring activities.

Similar​

  • Internal
    • ID: dec-c-14dfce40

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
💼 FedRAMP High Security Controls → 💼 CA-5 Plan of Action and Milestones (L)(M)(H)
💼 FedRAMP Low Security Controls → 💼 CA-5 Plan of Action and Milestones (L)(M)(H)
💼 NIST CSF v2.0 → 💼 ID.IM-01: Improvements are identified from evaluations20
💼 NIST CSF v2.0 → 💼 ID.IM-02: Improvements are identified from security tests and exercises, including those done in coordination with suppliers and relevant third parties33
💼 NIST CSF v2.0 → 💼 ID.IM-03: Improvements are identified from execution of operational processes, procedures, and activities34

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags
💼 CA-5(1) Plan of Action and Milestones _ Automation Support for Accuracy and Currency