The organization authorizes, monitors, and controls [Assignment: organization-defined types of information system components] entering and exiting the facility and maintains records of those items.
Effectively enforcing authorizations for entry and exit of information system components may require restricting access to delivery areas and possibly isolating the areas from the information system and media libraries.
The controls below (if any) were marked by NIST as being related to PE-16.
The controls below (if any) add on to the requirements of PE-16.
The CCIs below are tied to PE-16.