Under active development Content is continuously updated and improved · Last updated Feb 18, 2026, 2:55 AM UTC

CIP-010-4 3.3CIP-010-4 3.3

>Control Description

Prior to adding a new applicable Cyber Asset to a production environment, perform an active vulnerability assessment of the new Cyber Asset, except for CIP Exceptional Circumstances and like replacements of the same type of Cyber Asset with a baseline configuration that models an existing baseline configuration of the previous or other existing Cyber Asset.

>Cross-Framework Mappings

Ask AI

Configure your API key to use AI features.