Configuration management practices are established and applied
The hardware, software (e.g., firmware, operating systems, applications), and services of physical and virtual platforms are managed consistent with the organization's risk strategy to protect their confidentiality, integrity, and availability
| Citation | PR.PS |
|---|---|
| Clé de plateforme | arcate:compliance:requirements/nist-csf/2.0/PR.PS |
| Emplacement dans la source | row 115 of sheet 'CSF 2.0' |
| Publié par | NIST |
Exigences filles
Software is maintained, replaced, and removed commensurate with risk
Hardware is maintained, replaced, and removed commensurate with risk
Log records are generated and made available for continuous monitoring
Installation and execution of unauthorized software are prevented
Secure software development practices are integrated, and their performance is monitored throughout the software development life cycle