CM-6(2): Respond to Unauthorized Changes

CSF v1.1 References:

Baselines:

  • High

Previous Version:

Control Statement

Take the following actions in response to unauthorized changes to [Assignment: organization-defined configuration settings]: [Assignment: organization-defined actions].

Supplemental Guidance

Responses to unauthorized changes to configuration settings include alerting designated organizational personnel, restoring established configuration settings, or-in extreme cases-halting affected system processing.