SI-7(12)

  • Requirement

    Require that the integrity of the following user-installed software be verified prior to execution: [Assignment: organization-defined user-installed software].

  • Discussion

    Organizations verify the integrity of user-installed software prior to execution to reduce the likelihood of executing malicious code or programs that contains errors from unauthorized modifications. Organizations consider the practicality of approaches to verifying software integrity, including the availability of trustworthy checksums from software developers and vendors.

More Info

  • Title

    Software, Firmware, and Information Integrity | Integrity Verification
  • Family

    System and Information Integrity
  • NIST 800-53B Baseline(s)

    • Related NIST 800-53 ID

      CM-11

    NIST 800-53A Assessment Guidance

    CMMC Training

    Our CMMC Overview Course simplifies CMMC. Enroll so you can make informed decisions!