3.7.4: Check media containing diagnostic and test programs for malicious code before the media are used in organizational systems

Control Family:

Maintenance

Control Type:

Derived

CSF v1.1 References:

Discussion

If, upon inspection of media containing maintenance diagnostic and test programs, organizations determine that the media contain malicious code, the incident is handled consistent with incident handling policies and procedures.