SC-07.20 ยท Dynamic Isolation and Segregation

Control Description

Provide the capability to dynamically isolate {{ insert: param, sc-07.20_odp }} from other system components.

Impact Baselines
Security baselines where this control applies
Not in any baseline
Control Properties
SP800-53-enhancement
system
Enhancement
Control Statement
The control requirements

Provide the capability to dynamically isolate {{ insert: param, sc-07.20_odp }} from other system components.

Supplemental Guidance

The capability to dynamically isolate certain internal system components is useful when it is necessary to partition or separate system components of questionable origin from components that possess greater trustworthiness. Component isolation reduces the attack surface of organizational systems. Isolating selected system components can also limit the damage from successful attacks when such attacks occur.