Skip to main content

πŸ’Ό CM-5 Access Restrictions for Change

  • Contextual name: πŸ’Ό CM-5 Access Restrictions for Change
  • ID: /frameworks/nist-sp-800-53-r5/cm/05
  • Located in: πŸ’Ό CM Configuration Management

Description​

Define, document, approve, and enforce physical and logical access restrictions associated with changes to the system.

Similar​

  • Internal
    • ID: dec-c-a7f1f8a2

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό FedRAMP High Security Controls β†’ πŸ’Ό CM-5 Access Restrictions for Change (L)(M)(H)21517
πŸ’Ό FedRAMP Low Security Controls β†’ πŸ’Ό CM-5 Access Restrictions for Change (L)(M)(H)8

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό CM-5(1) Access Restrictions for Change _ Automated Access Enforcement and Audit Records
πŸ’Ό CM-5(2) Access Restrictions for Change _ Review System Changes
πŸ’Ό CM-5(3) Access Restrictions for Change _ Signed Components
πŸ’Ό CM-5(4) Access Restrictions for Change _ Dual Authorization
πŸ’Ό CM-5(5) Access Restrictions for Change _ Privilege Limitation for Production and Operation
πŸ’Ό CM-5(6) Access Restrictions for Change _ Limit Library Privileges
πŸ’Ό CM-5(7) Access Restrictions for Change _ Automatic Implementation of Security Safeguards