CM-7(6): Confined Environments with Limited Privileges

CSF v1.1 References:

Threats Addressed:

Baselines:

(Not part of any baseline)

Info icon.

Control is new to this version of the control set and incorporates the following item from the previous version: SI-7(11): Confined Environments With Limited Privileges.

Control Statement

Require that the following user-installed software execute in a confined physical or virtual machine environment with limited privileges: [Assignment: organization-defined user-installed software].

Supplemental Guidance

Organizations identify software that may be of concern regarding its origin or potential for containing malicious code. For this type of software, user installations occur in confined environments of operation to limit or contain damage from malicious code that may be executed.