1.8 KiB
implementation-status | control-origination | |||||
---|---|---|---|---|---|---|
|
|
ps-3 - [catalog] Personnel Screening
Control Statement
-
[a] Screen individuals prior to authorizing access to the system; and
-
[b] Rescreen individuals in accordance with organization-defined conditions requiring rescreening and, where rescreening is so indicated, the frequency of rescreening.
Control guidance
Personnel screening and rescreening activities reflect applicable laws, executive orders, directives, regulations, policies, standards, guidelines, and specific criteria established for the risk designations of assigned positions. Examples of personnel screening include background investigations and agency checks. Organizations may define different rescreening conditions and frequencies for personnel accessing systems based on types of information processed, stored, or transmitted by the systems.
Control assessment-objective
individuals are screened prior to authorizing access to the system; individuals are rescreened in accordance with conditions requiring rescreening; where rescreening is so indicated, individuals are rescreened frequency.
What is the solution and how is it implemented?
Implementation a.
Add control implementation description here for item ps-3_smt.a
Implementation b.
Add control implementation description here for item ps-3_smt.b