800-171

NIST 800-171 3.7.6 Supervise the maintenance activities of maintenance personnel without required access authorization.
Description:    This requirement applies to individuals who are performing hardware or software maintenance on organizational systems, while 3.0. addresses...
Wed, 12 Jul, 2023 at 6:14 AM
NIST 800-171 3.8.1 Protect (i.e., physically control and securely store) system media containing CUI, both paper and digital.
Description:   System media includes digital and non-digital media. Digital media includes diskettes, magnetic tapes, external and removable hard disk driv...
Wed, 12 Jul, 2023 at 6:09 AM
NIST 800-171 3.8.2 Limit access to CUI on system media to authorized users
Description:    Access can be limited by physically controlling system media and secure storage areas. Physically controlling system media includes conduct...
Wed, 12 Jul, 2023 at 6:05 AM
NIST 800-171 3.8.3 Sanitize or destroy system media containing CUI before disposal or release for reuse.
Description:    This requirement applies to all system media, digital and non-digital, subject to disposal or reuse. Examples include: digital media found ...
Wed, 12 Jul, 2023 at 6:02 AM
NIST 800-171 3.8.4 Mark media with necessary CUI markings and distribution limitations.[27]
Description:    The term security marking refers to the application or use of human-readable security attributes. System media includes digital and non-dig...
Wed, 12 Jul, 2023 at 6:00 AM
NIST 800-171 3.8.5 Control access to media containing CUI and maintain accountability for media during transport outside of controlled areas.
Description:    Controlled areas are areas or spaces for which organizations provide physical or procedural controls to meet the requirements established f...
Sat, 8 Jul, 2023 at 1:45 PM
NIST 800-171 3.8.6 Implement cryptographic mechanisms to protect the confidentiality of CUI stored on digital media during transport unless otherwise protected by alternative physical safeguards.
Description:    This requirement applies to portable storage devices (e.g., USB memory sticks, digital video disks, compact disks, external or removable ha...
Wed, 12 Jul, 2023 at 5:51 AM
NIST 800-171 3.8.7 Control the use of removable media on system components.
Description:   In contrast to requirement 3.8., which restricts user access to media, this requirement restricts the use of certain types of media on syste...
Wed, 12 Jul, 2023 at 5:46 AM
NIST 800-171 3.8.8 Prohibit the use of portable storage devices when such devices have no identifiable owner.
Description:    Requiring identifiable owners (e.g., individuals, organizations, or projects) for portable storage devices reduces the overall risk of usin...
Wed, 12 Jul, 2023 at 5:39 AM
NIST 800-171 3.8.9 Protect the confidentiality of backup CUI at storage locations.
Description:    Organizations can employ cryptographic mechanisms or alternative physical controls to protect the confidentiality of backup information at ...
Wed, 12 Jul, 2023 at 5:35 AM