CCI-001980
CCI-001980 Definition
Status | |
Type | CheckType.policy |
Master Assessment Datasheet
Implementation Guidance
The organization being inspected/assessed defines and documents procedures for the secure distribution of authenticators. The process shall include verification of the identify of the individual, group, role, or device receiving the authenticator.
Validation Procedures
The organization conducting the inspection/assessment obtains and examines the documented procedures for the secure distribution of authenticators to ensure they have been defined and that they include a method to verify the identify of the individual, group, role, or device receiving the authenticator.
Compelling Evidence
1.) Signed and dated SOP/TTP implementing procedures for secure distribution of authenticators. 2.) Signed and dated Key Management Policy and 3.) Signed and dated Account Creation SOP for procedures involving secure distribution of authenticators.