💼 CM-8 System Component Inventory
- ID:
/frameworks/nist-sp-800-53-r5/cm/08
Stats
not available
Description
a. Develop and document an inventory of system components that:
- Accurately reflects the system;
- Includes all components within the system;
- Does not include duplicate accounting of components or components assigned to any other system;
- Is at the level of granularity deemed necessary for tracking and reporting; and
- Includes the following information to achieve system component accountability: [Assignment: organization-defined information deemed necessary to achieve effective system component accountability]; and b. Review and update the system component inventory [Assignment: organization-defined frequency].
Similar
- Sections
/frameworks/aws-fsbp-v1.0.0/config/01/frameworks/aws-fsbp-v1.0.0/fsx/02/frameworks/aws-fsbp-v1.0.0/service-catalog/01/frameworks/aws-fsbp-v1.0.0/ssm/01/frameworks/aws-fsbp-v1.0.0/ssm/03
- Internal
- ID:
dec-c-cc75dbf4
- ID:
Similar Sections (Take Policies From)
Similar Sections (Give Policies To)
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|---|---|---|---|---|
| 💼 FedRAMP High Security Controls → 💼 CM-8 System Component Inventory (L)(M)(H) | 4 | 5 | no data | ||
| 💼 FedRAMP Low Security Controls → 💼 CM-8 System Component Inventory (L)(M)(H) | 2 | no data | |||
| 💼 NIST CSF v2.0 → 💼 ID.AM-01: Inventories of hardware managed by the organization are maintained | 4 | no data | |||
| 💼 NIST CSF v2.0 → 💼 ID.AM-02: Inventories of software, services, and systems managed by the organization are maintained | 9 | no data |
Sub Sections
Policies (2)
| Policy | Logic Count | Flags | Compliance |
|---|---|---|---|
| 🛡️ AWS Account Config is not enabled in all regions🟢 | 1 | 🟢 x6 | no data |
| 🛡️ Google Cloud Asset Inventory API is not enabled🟢 | 1 | 🟢 x6 | no data |