Under active development Content is continuously updated and improved

SC-7(20)Boundary Protection

Technical

>Control Description

BOUNDARY PROTECTION | DYNAMIC ISOLATION / SEGREGATION The information system provides the capability to dynamically isolate/segregate organization-defined information system components from other components of the system.

>Supplemental Guidance

The capability to dynamically isolate or segregate certain internal components of organizational information systems is useful when it is necessary to partition or separate certain components of dubious origin from those components possessing greater trustworthiness. Component isolation reduces the attack surface of organizational information systems. Isolation of selected information system components is also a means of limiting the damage from successful cyber-attacks when those attacks occur.

Ask AI

Configure your API key to use AI features.