Transcription of Security Control Standards Catalog V1 - Texas
{{id}} {{{paragraph}}}
Security Control Standards Catalog Version Texas Department of Information Resources 2/26/2016 Texas Department of Information Resources | Office of the Chief Information Security Officer ii Security Control Standards Catalog Contents About the Security Control Standards Catalog .. 1 Document Life Cycle .. 1 Revision History .. 2 Scope .. 2 Exceptions .. 2 Control Details and Sample Format .. 2 Notes on the Control Details and Sample Format .. 2 Security Controls Standards .. 4 AC Access Control .. 4 AP Authority and Purpose .. 21 AR Accountability, Audit, and Risk Management .. 23 AT Awareness and Training .. 29 AU Audit and Accountability .. 32 CA Security Assessment and Authorization .. 43 CM Configuration 49 CP Contingency Planning .. 57 DI Data Quality and Integrity .. 66 DM Data Minimization and Retention .. 68 IA Identification and Authentication.
security and regulatory systems. • PRIORITY/BASELINE The PRIORITY/BASELINE is imported from NIST SP 800-53 and used for two distinct purposes. The BASELINEs are used to select which controls to implement and relate to the three impact levels—LOW, MODERATE, or HIGH—of a system. For the purposes of this version of the control catalog only LOW
Domain:
Source:
Link to this page:
Please notify us if you found a problem with this document:
{{id}} {{{paragraph}}}