Trustmark Definition Name | Version |
---|---|
Defines conformance and assessment criteria for verifying that an information system uniquely identifies and authenticates [Assignment: organization-defined specific and/or types of devices] before establishing a [Selection (one or more): local; remote; network] connection.
|
1.0 |
Defines conformance and assessment criteria for verifying that an information system authenticates organization-defined specific devices and/or types of devices before establishing local, remote, or network connections using using bidirectional authentication that is cryptographically based.
|
1.0 |
Defines conformance and assessment criteria for verifying that an organization ensures that device identification and authentication based on attestation is handled by an organization-defined configuration management process.
|
1.0 |
Defines conformance and assessment criteria for verifying that an organization standardizes dynamic address allocation lease information and the lease duration assigned to devices in accordance with organization-defined lease information duration requirements.
|
1.0 |
Defines conformance and assessment criteria for verifying that an organization audits dynamic address allocation lease information when assigned to a device.
|
1.0 |
Addresses the requirement for organizations to issue certificates only to devices under the issuing organization's control.
|
1.0 |
Organizations must document their digital identity risk acceptance statement including specific details regarding assurance levels implemented and assessed, as well as documenting any compensating controls needed to pass assessments.
|
1.0 |
Organizations must perform a digital identity risk assessment during which it should identify all of its operating assurance levels across identity, authentication, and federation.
|
1.0 |
This Trustmark Definition defines conformance and assessment criteria for compliance with minimum security requirements for access enforcement as related to overall access control requirements.
|
1.0 |
Defines conformance and assessment criteria for verifying that an organization disables accounts posing significant risk.
|
1.0 |
Defines privacy requirements related to organizations disclose sensitive information for purposes other than those specified.
|
1.0 |
Defines conformance and assessment criteria for compliance with minimum security requirements for discrete information security budget as related to overall system and services acquisition requirements.
|
1.0 |
This Trustmark Definition addresses the requirement for organizations to enforce a discretionary access control policy.
|
1.0 |
Defines conformance and assessment criteria for compliance with minimum security requirements for dissemination of access control policy as related to overall access control requirements.
|
1.0 |
Defines conformance and assessment criteria for compliance with minimum security requirements for dissemination of access control procedures as related to overall access control requirements.
|
1.0 |
Defines conformance and assessment criteria for compliance with minimum security requirements for dissemination of audit and accountability policy as related to overall audit and accountability requirements.
|
1.0 |
Defines conformance and assessment criteria for compliance with minimum security requirements for dissemination of audit and accountability procedures as related to overall audit and accountability requirements.
|
1.0 |
Defines conformance and assessment criteria for compliance with minimum security requirements for dissemination of configuration management policy as related to overall configuration management requirements.
|
1.0 |
Defines conformance and assessment criteria for compliance with minimum security requirements for dissemination of configuration management procedures as related to overall configuration management requirements.
|
1.0 |
Defines conformance and assessment criteria for compliance with minimum security requirements for dissemination of contingency planning policy as related to overall contingency planning requirements.
|
1.0 |
Defines conformance and assessment criteria for compliance with minimum security requirements for dissemination of contingency planning procedures as related to overall contingency planning requirements.
|
1.0 |
Defines conformance and assessment criteria for compliance with minimum security requirements for dissemination of identification and authentication policy as related to overall identification and authentication requirements.
|
1.0 |
Defines conformance and assessment criteria for compliance with minimum security requirements for dissemination of identification and authentication procedures as related to overall identification and authentication requirements.
|
1.0 |
Defines conformance and assessment criteria for compliance with minimum security requirements for dissemination of incident response policy as related to overall incident response requirements.
|
1.0 |
Defines conformance and assessment criteria for compliance with minimum security requirements for dissemination of incident response procedures as related to overall incident response requirements.
|
1.0 |