Under active development Content is continuously updated and improved

AC-19(4)Access Control For Mobile Devices

Secret (P1)
Technical

>Control Description

ACCESS CONTROL FOR MOBILE DEVICES | RESTRICTIONS FOR CLASSIFIED INFORMATION (a) The organization prohibits the use of unclassified mobile devices in facilities containing information systems processing, storing, or transmitting classified information unless specifically permitted by the authorizing official; and (b) The organization enforces the following restrictions on individuals permitted by the authorizing official to use unclassified mobile devices in facilities containing information systems processing, storing, or transmitting classified information: - Connection of unclassified mobile devices to classified information systems is prohibited; - Connection of unclassified mobile devices to unclassified information systems requires approval from the authorizing official; - Use of internal or external modems or wireless interfaces within the unclassified mobile devices is prohibited (i.e. turned off); and - Unclassified mobile devices and the information stored on those devices are subject to random reviews and inspections by organization-defined security officials, and if classified information is found, the incident handling policy is followed. - Restricts the connection of classified mobile devices to classified information systems in accordance with organization-defined security policies.

>Supplemental Guidance

Related controls: CA-6, IR-4.

Ask AI

Configure your API key to use AI features.