Authorize the use of organization-defined system components which have the potential to cause damage to the system if used maliciously.
No STIG checks reference this CCI.