NET-04.7 ยท Policy Decision Point (PDP)

Control Description

Automated mechanisms exist to evaluate access requests against established criteria to dynamically and uniformly enforce access rights and permissions.

Control Question
Assessment question for control validation

Does the organization evaluate access requests against established criteria to dynamically and uniformly enforce access rights and permissions?

Control Weighting
5
Validation Cadence
Quarterly
NIST CSF Function
Protect
Supply Chain Risk Management (SCRM) Tiers
Applicable SCRM tier levels for this control
Tier 2 - Operational
Tier 3 - Tactical