id: "SI-07(01)" title: "Integrity Checks" family: "SI" family_name: "System and Information Integrity" sort_id: "si-07.01" priority: "P1" implementation_level: "system" parent: "SI-07" enhancement: True


Statement

Perform an integrity check of {{ insert: param, si-7.1_prm_1 }} {{ insert: param, si-7.1_prm_2 }}.

Guidance

Security-relevant events include the identification of new threats to which organizational systems are susceptible and the installation of new hardware, software, or firmware. Transitional states include system startup, restart, shutdown, and abort.

Assessment Objective: an integrity check of {{ insert: param, si-07.01_odp.01 }} is performed {{ insert: param, si-07.01_odp.02 }};

Assessment Objective: an integrity check of {{ insert: param, si-07.01_odp.05 }} is performed {{ insert: param, si-07.01_odp.06 }};

Assessment Objective: an integrity check of {{ insert: param, si-07.01_odp.09 }} is performed {{ insert: param, si-07.01_odp.10 }}.

System and information integrity policy

system and information integrity procedures

procedures addressing software, firmware, and information integrity testing

system design documentation

system configuration settings and associated documentation

integrity verification tools and associated documentation

records of integrity scans

system security plan

other relevant documents or records

Organizational personnel responsible for software, firmware, and/or information integrity

organizational personnel with information security responsibilities

system/network administrators

system developer

Software, firmware, and information integrity verification tools