CCI-003055
CCI-003055 Definition
Develop security and privacy plans for the system that provide an overview of the security and privacy requirements for the system.
Status | |
Type | CheckType.policy |
Master Assessment Datasheet
Implementation Guidance
The organization being inspected/assessed documents within the security plan, an overview of the security requirements for the system.
Validation Procedures
The organization conducting the inspection/assessment obtains and examines the security plan to ensure the organization being inspected/assessed their security plan for the information system provides an overview of the security requirements for the system
Compelling Evidence
1.) System security plan (SSP).