CoreOS 4.x - Maintenance
Control responses for NIST 800-53 rev4.
NOTE: All CoreOS content is under active development through the ComplianceAsCode Project. Do not consider this content production ready!
Requirements Traceability Matrix
Control | Name | Status |
---|---|---|
MA-1 | System Maintenance Policy And Procedures |
not applicable |
MA-2 | Controlled Maintenance |
planned |
MA-2 (1) | Record Content |
not applicable |
MA-2 (2) | Automated Maintenance Activities |
planned |
MA-3 | Maintenance Tools |
planned |
MA-3 (1) | Inspect Tools |
planned |
MA-3 (2) | Inspect Media |
not applicable |
MA-3 (3) | Prevent Unauthorized Removal |
not applicable |
MA-3 (4) | Restricted Tool Use |
planned |
MA-4 | Nonlocal Maintenance |
planned |
MA-4 (1) | Auditing And Review |
planned |
MA-4 (2) | Document Nonlocal Maintenance |
planned |
MA-4 (3) | Comparable Security / Sanitization |
planned |
MA-4 (4) | Authentication / Separation Of Maintenance Sessions |
planned |
MA-4 (5) | Approvals And Notifications |
not applicable |
MA-4 (6) | Cryptographic Protection |
planned |
MA-4 (7) | Remote Disconnect Verification |
planned |
MA-5 | Maintenance Personnel |
not applicable |
MA-5 (1) | Individuals Without Appropriate Access |
not applicable |
MA-5 (2) | Security Clearances For Classified Systems |
not applicable |
MA-5 (3) | Citizenship Requirements For Classified Systems |
not applicable |
MA-5 (4) | Foreign Nationals |
not applicable |
MA-5 (5) | Nonsystem-Related Maintenance |
not applicable |
MA-6 | Timely Maintenance |
planned |
MA-6 (1) | Preventive Maintenance |
planned |
MA-6 (2) | Predictive Maintenance |
planned |
MA-6 (3) | Automated Support For Predictive Maintenance |
planned |
MA-1: System Maintenance Policy And Procedures
The organization: a. Develops, documents, and disseminates to [Assignment: organization-defined personnel or roles]: 1. A system maintenance policy that addresses purpose, scope, roles, responsibilities, management commitment, coordination among organizational entities, and compliance; and 2. Procedures to facilitate the implementation of the system maintenance policy and associated system maintenance controls; and b. Reviews and updates the current: 1. System maintenance policy [Assignment: organization-defined frequency]; and 2. System maintenance procedures [Assignment: organization-defined frequency].
|
---|
Implementation Status: |