NIST SP 800-53 r4 Security Control SA-15 (7): Automated Vulnerability Analysis, v4
Profile of requirements corresponding to NIST Special Publication 800-53, r4, Security Control SA-15 (7): Automated Vulnerability Analysis.

Trust Expression:
TD_ref1
References (1)
TD Development Process, Standards, And Tools | Automated Vulnerability Analysis, v1.0 | |
---|---|
Description | Defines conformance and assessment criteria for verifying that an organization requires the developer of the information system, system component, or information system service to: (a) Perform an automated vulnerability analysis using organization-defined tools; (b) Determine the exploitation potential for discovered vulnerabilities; (c) Determine potential risk mitigations for delivered vulnerabilities; and (d) Deliver the outputs of the tools and results of the analysis to organization-defined personnel or roles. . |
ID | TD_ref1 |
Provider Reference |
Sources (1)
SP800-53R4 | NIST Special Publication 800-53 Revision 4, Security and Privacy Controls for Federal Information Systems and Organizations, National Institute of Standards and Technology, April 2013 (Includes updates as of 01-15-2014). Available at http://dx.doi.org/10.6028/NIST.SP.800-53r4. |