CCI-003062
CCI-003062 Definition
Defines the personnel or roles to whom changes to the plans are communicated.
Status | |
Type | CheckType.policy |
Master Assessment Datasheet
Implementation Guidance
DoD has defined the personnel or roles as at a minimum, the ISSO, ISSM and SCA.
Validation Procedures
The organization being inspected/assessed is automatically compliant with this CCI because they are covered at the DoD level. DoD has defined the personnel or roles as at a minimum, the ISSO, ISSM and SCA.
Compelling Evidence
1.) System security plan (SSP). 2.) Up-to-date distribution list for security plan changes that includes identified personnel or roles.