manage.get.gov/docs/compliance/dist/system-security-plans/ato/ma-3.1.md
Logan McDonald 1d3dfdb8d5
Add compliance documentation to source control (#116)
* add initial setup of compliance-trestle
2022-09-14 08:46:43 -04:00

1.1 KiB
Raw Blame History

implementation-status control-origination
c-not-implemented
c-inherited-cloud-gov
c-inherited-cisa
c-common-control
c-system-specific-control

ma-3.1 - [catalog] Inspect Tools

Control Statement

Inspect the maintenance tools used by maintenance personnel for improper or unauthorized modifications.

Control guidance

Maintenance tools can be directly brought into a facility by maintenance personnel or downloaded from a vendors website. If, upon inspection of the maintenance tools, organizations determine that the tools have been modified in an improper manner or the tools contain malicious code, the incident is handled consistent with organizational policies and procedures for incident handling.

Control assessment-objective

maintenance tools used by maintenance personnel are inspected for improper or unauthorized modifications.


What is the solution and how is it implemented?

Add control implementation description here for control ma-3.1