Skip to main content

💼 CM-4 Impact Analyses

  • Contextual name: 💼 CM-4 Impact Analyses
  • ID: /frameworks/nist-sp-800-53-r5/cm/04
  • Located in: 💼 CM Configuration Management

Description​

Analyze changes to the system to determine potential security and privacy impacts prior to change implementation.

Similar​

  • Internal
    • ID: dec-c-eab45591

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
💼 FedRAMP High Security Controls → 💼 CM-4 Impact Analyses (L)(M)(H)2
💼 FedRAMP Low Security Controls → 💼 CM-4 Impact Analyses (L)(M)(H)
💼 NIST CSF v2.0 → 💼 ID.RA-07: Changes and exceptions are managed, assessed for risk impact, recorded, and tracked28

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags
💼 CM-4(1) Impact Analyses _ Separate Test Environments
💼 CM-4(2) Impact Analyses _ Verification of Controls