STIGhub
STIGs
RMF Controls
Compare
← All Controls
PM-4
Program Management
Rev 5
Plan of Action and Milestones Process
CCI Identifiers (14)
CCI-000142
Implement a process to ensure that plans of action and milestones for the information security program and the associated organizational systems are maintained.
CCI-000170
Implement a process to ensure that plans of action and milestones for the security program and associated organizational systems document the remedial information security actions to adequately respond to risk to organizational operations and assets, individuals, other organizations, and the Nation.
CCI-002991
Implement a process to ensure that plans of action and milestones for the information security program and associated organizational systems are developed.
CCI-002992
The organization implements a process for ensuring that plans of action and milestones for the security program and associated organizational information systems are reported in accordance with OMB FISMA reporting requirements.
CCI-002993
Review plans of action and milestones for the security program and associated organization systems for consistency with the organizational risk management strategy and organization-wide priorities for risk response actions.
CCI-004319
Implement a process to ensure that plans of action and milestones for the privacy program and the associated organizational systems are maintained.
CCI-004320
Implement a process to ensure that plans of action and milestones for the privacy program and associated organizational systems are developed.
CCI-004321
Implement a process to ensure that plans of action and milestones for the supply chain risk management programs and the associated organizational systems are maintained.
CCI-004322
Implement a process to ensure that plans of action and milestones for the supply chain risk management programs and the associated organizational systems are developed.
CCI-004323
Implement a process to ensure that plans of action and milestones for the privacy program and associated organizational systems document the remedial information privacy actions to adequately respond to risk to organizational operations and assets, individuals, other organizations, and the Nation.
CCI-004324
Implement a process to ensure that plans of action and milestones for the supply chain risk management program and associated organizational systems document the remedial information supply chain risk management actions to adequately respond to risk to organizational operations and assets, individuals, other organizations, and the Nation.
CCI-004325
Implement a process to ensure that plans of action and milestones for the security program and associated organizational systems are reported in accordance with established reporting requirements.
CCI-004326
Implement a process to ensure that plans of action and milestones for the privacy program and associated organizational systems are reported in accordance with established reporting requirements.
CCI-004327
Implement a process to ensure that plans of action and milestones for the supply chain risk management program and associated organizational systems are reported in accordance with established reporting requirements.
Linked STIG Checks (0)
No STIG checks reference this control.