Skip to Content

 System and Information Integrity

NIST 800-171 - Flaw Remediation (3.14.1)

Overview:Identify, report, and correct information and information system flaws in a timely manner. Action Items:3.14.1[a]Determine if: the time within which to identify system flaws is specified. 3.14.1[b]Determine if: system flaws are identified... Read More

NIST 800-171 - Information System Monitoring (3.14.6)

Overview:Monitor the information system including inbound and outbound communications traffic, to detect attacks and indicators of potential attacks. Action Items:3.14.6[a]Determine if: the system is monitored to detect attacks and indicators of... Read More

NIST 800-171 - Malicious Code Protection (3.14.2)

Overview:Provide protection from malicious code at appropriate locations within organizational information systems. Action Items:3.14.2[a]Determine if: designated locations for malicious code protection are identified. 3.14.2[b]Determine if:... Read More

NIST 800-171 - Malicious Code Protection Updates (3.14.4)

Overview:Update malicious code protection mechanisms when new releases are available. Action Items:3.14.4[a]Determine if: malicious code protection mechanisms are updated when new releases are available. POTENTIAL ASSESSMENT METHODS AND OBJECTS... Read More

NIST 800-171 - Scanning for Malicious Code (3.14.5)

Overview:Perform periodic scans of the information system and real-time scans of files from external sources as files are downloaded, opened, or executed. Action Items:3.14.5[a]Determine if: the frequency for malicious code scans is defined. 3.14.5[b... Read More

NIST 800-171 - Security Event Handling (3.14.7)

Overview:Identify unauthorized use of the information system. Action Items:3.14.7[a]Determine if: authorized use of the system is defined. 3.14.7[b]Determine if: unauthorized use of the system is identified. POTENTIAL ASSESSMENT METHODS AND OBJECTS... Read More