Table E-4: Tailoring Actions for Security Assessment and Authorization Controls
NIST SP 800-53 MODERATE BASELINE SECURITY CONTROLS |
TAILORING |
|
CA-1 |
Security Assessment and Authorization Policies and Procedures |
NFO |
CA-2 |
Security Assessments |
CUI |
CA-2(1) |
SECURITY ASSESSMENTS | INDEPENDENT ASSESSORS |
NFO |
CA-3 |
System Interconnections |
NFO |
CA-3(5) |
SYSTEM INTERCONNECTIONS | RESTRICTIONS ON EXTERNAL SYSTEM CONNECTIONS |
NFO |
CA-5 |
Plan of Action and Milestones |
CUI |
CA-6 |
Security Authorization |
FED |
CA-7 |
Continuous Monitoring |
CUI |
CA-7(1) |
CONTINUOUS MONITORING | INDEPENDENT ASSESSMENT |
NFO |
CA-9 |
Internal System Connections |
NFO |