CCP Lesson 8 Flashcards
Access Control (AC) L1-3.1.1
Limit information system access to authorized users, processes acting on behalf of authorized users, of devices
Access Control (AC) L1-3.1.2
Limit information system access to the types of transactions and functions that authorized users are permitted to execute.
Access Control (AC) L1-3.1.20
Verify and control/limit connection to and use of external information systems.
Access Control (AC) L1-3.1.22
Control information posted of processed on publicly available information systems.
Identification and Authentication (IA) L1-3.5.1
Identify information system users, processes acting on behalf of users of devices.
Identification and Authentication (IA) L1-3.5.2
Authenticate the identities of those users, processes, of devices, as a prerequisite to allowing access to organizational information systems.
Media Protection (MP) L1-3.8.3
Sanitize or destroy information system media containing Federal Contract Information before disposal or release.
Physical Protection (PE) L1-3.10.1
Limit physical access to organizational information systems, equipment, and the respective operating environments to authorized individuals.
Physical Protection (PE) L1-3.10.3
Escort visitors and monitor visitor activity.
Physical Protection (PE) L1-3.10.4
Maintan audit logs of physical access
Physical Protection (PE) L1-3.10.5
Control and manage physical access devices.
System and Communications Protection (SC) L1-3.13.1
Monitor, control, and protect organizational communications at the external boundaries and key internal boundaries of the information systems.
System and Communications Protection (SC) L1-3.13.5
Implement subnetworks for publicly accessible system components that are physically of logically separated from internal networks.
System and Information Integrity (SI) L1-3.14.1
Identify, Report, and correct information and information system flaws in a timely manner.
System and Information Integrity (SI) L1-3.14.2
Provide protection from malicious code at appropriate locations withing organizational information systems.