CoreOS 4.x - Maintenance

Control responses for NIST 800-53 rev4.

NOTE: All CoreOS content is under active development through the ComplianceAsCode Project. Do not consider this content production ready!


Requirements Traceability Matrix

Control Name Status
MA-1 System Maintenance Policy And Procedures

not applicable

MA-2 Controlled Maintenance

planned

MA-2 (1) Record Content

not applicable

MA-2 (2) Automated Maintenance Activities

planned

MA-3 Maintenance Tools

planned

MA-3 (1) Inspect Tools

planned

MA-3 (2) Inspect Media

not applicable

MA-3 (3) Prevent Unauthorized Removal

not applicable

MA-3 (4) Restricted Tool Use

planned

MA-4 Nonlocal Maintenance

planned

MA-4 (1) Auditing And Review

planned

MA-4 (2) Document Nonlocal Maintenance

planned

MA-4 (3) Comparable Security / Sanitization

planned

MA-4 (4) Authentication / Separation Of Maintenance Sessions

planned

MA-4 (5) Approvals And Notifications

not applicable

MA-4 (6) Cryptographic Protection

planned

MA-4 (7) Remote Disconnect Verification

planned

MA-5 Maintenance Personnel

not applicable

MA-5 (1) Individuals Without Appropriate Access

not applicable

MA-5 (2) Security Clearances For Classified Systems

not applicable

MA-5 (3) Citizenship Requirements For Classified Systems

not applicable

MA-5 (4) Foreign Nationals

not applicable

MA-5 (5) Nonsystem-Related Maintenance

not applicable

MA-6 Timely Maintenance

planned

MA-6 (1) Preventive Maintenance

planned

MA-6 (2) Predictive Maintenance

planned

MA-6 (3) Automated Support For Predictive Maintenance

planned




MA-1: System Maintenance Policy And Procedures

The organization: a. Develops, documents, and disseminates to [Assignment: organization-defined personnel or roles]: 1. A system maintenance policy that addresses purpose, scope, roles, responsibilities, management commitment, coordination among organizational entities, and compliance; and 2. Procedures to facilitate the implementation of the system maintenance policy and associated system maintenance controls; and b. Reviews and updates the current: 1. System maintenance policy [Assignment: organization-defined frequency]; and 2. System maintenance procedures [Assignment: organization-defined frequency].

MA-1 Control Response Information
Implementation Status: