STIGhubSTIGhub
STIGsRMF ControlsCompare

STIGhub

A free tool to search and browse the entire DISA STIG library. Saves up to 75% in security compliance research time.

Navigation

  • Browse STIGs
  • Search
  • RMF Controls
  • Compare Versions

Resources

  • About
  • Release Notes
  • VPAT
  • DISA STIG Library
STIGs updated 7 hours ago
Powered by Pylon
© 2026 Beacon Cloud Solutions, Inc. All rights reserved.
← All Controls

PM-25

Program ManagementRev 5

Minimization of Personally Identifiable Information Used in Testing, Training, and Research

CCI Identifiers (10)

CCI-004425Develop and document policies that address the use of personally identifiable information for internal testing, training, and research.CCI-004426Develop and document procedures that address the use of personally identifiable information for internal testing, training, and research.CCI-004427Implement policies that address the use of personally identifiable information for internal testing, training, and research.CCI-004428Implement procedures that address the use of personally identifiable information for internal testing, training, and research.CCI-004429Limit or minimize the amount of personally identifiable information used for internal testing, training, and research purposes.CCI-004430Authorize the use of personally identifiable information when such information is required for internal testing, training, and research.CCI-004431Review and update policies on an organization-defined frequency.CCI-004432Defines the frequency of which the policies should be reviewed and updated.CCI-004433Review and update procedures on an organization-defined frequency.CCI-004434Defines the frequency of which the procedures should be reviewed and updated.

Linked STIG Checks (0)

No STIG checks reference this control.