SA-18(2)—Tamper Resistance And Detection
Secret
Management
>Control Description
TAMPER RESISTANCE AND DETECTION | INSPECTION OF INFORMATION SYSTEMS, COMPONENTS, OR DEVICES The organization inspects ⚙organization-defined information systems, system components, or devices [Selection (one or more): at random; at ⚙organization-defined frequency, upon ⚙organization-defined indications of need for inspection] to detect tampering.
>Supplemental Guidance
This control enhancement addresses both physical and logical tampering and is typically applied to mobile devices, notebook computers, or other system components taken out of organization-controlled areas. Indications of need for inspection include, for example, when individuals return from travel to high-risk locations. Related control: SI-4.
>Tailoring Guidance
This security control/enhancement specifies a very specialized and/or advanced capability that is not required for all systems. Consequently, inclusion in a departmental profile is made on a case by case basis.
Ask AI
Configure your API key to use AI features.