SR-11(3)
-
Requirement
Scan for counterfeit system components [Assignment: organization-defined frequency].
-
Discussion
The type of component determines the type of scanning to be conducted (e.g., web application scanning if the component is a web application).
NIST 800-53A Assessment Guidance
CMMC Training
Our CMMC Overview Course simplifies CMMC. Enroll so you can make informed decisions!