14 NIST SP 800-171 security domains. 110 practices. 320 assessment objectives. Mapped, scored, and tracked inside one platform your C3PAO can assess on site.
22 Requirements
Limit system access to authorized users, processes, and devices.
Explore domain3 Requirements
Ensure personnel are aware of security risks and trained in their responsibilities.
Explore domain9 Requirements
Create, protect, and retain system audit records for monitoring and investigation.
Explore domain9 Requirements
Establish and enforce security configuration settings across organizational systems.
Explore domain11 Requirements
Identify and authenticate users, processes, and devices before granting access.
Explore domain3 Requirements
Establish operational incident handling capabilities for organizational systems.
Explore domain6 Requirements
Perform timely maintenance and control maintenance tools and personnel.
Explore domain9 Requirements
Protect, sanitize, and control system media containing CUI.
Explore domain2 Requirements
Screen individuals prior to access and ensure CUI protection during personnel actions.
Explore domain6 Requirements
Limit physical access to systems, equipment, and operating environments.
Explore domain3 Requirements
Assess organizational risk and scan for system vulnerabilities.
Explore domain4 Requirements
Assess, monitor, and correct deficiencies in organizational security controls.
Explore domain16 Requirements
Monitor, control, and protect communications at system boundaries.
Explore domain7 Requirements
Identify, report, and correct system flaws and malicious activity.
Explore domain1TEN is an air-gapped, on-premises GRC platform engineered for defense contractors handling CUI.
Request a Demo