CCI-003117
CCI-003117 Definition
| Status | |
| Type | CheckType.policy |
Master Assessment Datasheet
Implementation Guidance
Determine if [PL-09_ODP; security and privacy controls and related processes to be centrally managed are defined] are centrally managed.
Validation Procedures
Examine: [SELECT FROM: Security and privacy planning policy; procedures addressing security and privacy plan development and implementation; system security plan; privacy plan; other relevant documents or records]. Interview: [SELECT FROM: Organizational personnel with security and privacy planning and plan implementation responsibilities; organizational personnel with responsibilities for planning/implementing central management of controls and related processes; organizational personnel with information security and privacy responsibilities]. Test: [SELECT FROM: Organizational processes for the central management of controls and related processes; mechanisms supporting and/or implementing central management of controls and related processes].