Mechanisms exist to prohibit unauthorized changes, unless organization-approved change requests are received.
Control Question
Assessment question for control validation
Does the organization prohibit unauthorized changes, unless organization-approved change requests are received?
Supply Chain Risk Management (SCRM) Tiers
Applicable SCRM tier levels for this control
Tier 2 - Operational
Tier 3 - Tactical
Core Control Designations
Special designations and baseline inclusions
MAD: CHG-02.1
ESP Level 1: CHG-02.1
ESP Level 2: CHG-02.1
ESP Level 3: CHG-02.1