preview

System Security Controls : Table 1 System Compliance Essay

Decent Essays

System Security Controls
Table 1 System Compliance
NIST 800-53 Control Family Number Met / % Number
Partially
Met / % Number Not
Met / % Number
N/A / %
Control of system and Information Access (AC)
Training & Awareness (AT)
Audit & Accountability (AU)
Assessments of Security, Certification & Accreditation (CA)
Management of System Configurations (CM)
Contingency Planning (CP)
User Identification and Authentication (IA)
Incident Response (IR)
Repair and Maintenance (MA)
Protection of Media (MP)
Protection at Physical and Environmental level (PE)
Security Planning (PL)
Security of Personnel (PS)
Assessment of Risk (RA)
Acquisition of System and Services (SA)
Protection of Communications and System (SC)
Integrity of System and Information (SI)
Total Control Population

Table 2 identifies the controls applicable to Sentara IT System. The security controls are illustrated using various colour codes and identified by the following convention:
Dark Blue = Company-wide security controls
Light Diagonally Down shaded = These controls are not required for testing at a moderate baseline
Light Yellow = System-specific controls

Table 2 Implementation of Security Controls
Assessment of Risks Security Planning Acquisition of System and Services Certification, Assessments of Security and Accreditation Personnel Security

Get Access