IA-1—Policy and Procedures
>Control Description
Develop, document, and disseminate to ⚙organization-defined personnel or roles: (a) Addresses purpose, scope, roles, responsibilities, management commitment, coordination among organizational entities, and compliance; and (b) Is consistent with applicable laws, executive orders, directives, regulations, policies, standards, and guidelines; and
[Selection (one or more): Organization-level; Mission/business process-level; System-level] identification and authentication policy that:
Procedures to facilitate the implementation of the identification and authentication policy and the associated identification and authentication controls;
Designate an ⚙organization-defined official to manage the development, documentation, and dissemination of the identification and authentication policy and procedures; and
Review and update the current identification and authentication:
Policy ⚙organization-defined frequency and following ⚙organization-defined events; and
Procedures ⚙organization-defined frequency and following ⚙organization-defined events.
>Related Controls
Ask AI
Configure your API key to use AI features.