Skip to main content

πŸ’Ό CM-4 Impact Analyses

  • Contextual name: πŸ’Ό CM-4 Impact Analyses
  • ID: /frameworks/nist-sp-800-53-r5/cm/04
  • Located in: πŸ’Ό CM Configuration Management

Description​

Analyze changes to the system to determine potential security and privacy impacts prior to change implementation.

Similar​

  • Internal
    • ID: dec-c-eab45591

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό FedRAMP High Security Controls β†’ πŸ’Ό CM-4 Impact Analyses (L)(M)(H)2
πŸ’Ό FedRAMP Low Security Controls β†’ πŸ’Ό CM-4 Impact Analyses (L)(M)(H)
πŸ’Ό NIST CSF v2.0 β†’ πŸ’Ό ID.RA-07: Changes and exceptions are managed, assessed for risk impact, recorded, and tracked24

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό CM-4(1) Impact Analyses _ Separate Test Environments
πŸ’Ό CM-4(2) Impact Analyses _ Verification of Controls