NIST 800-53 Rev 5
424 controls available
Comparable Security and Sanitization
Maintenance
Control Statement
Require that nonlocal maintenance and diagnostic services be performed from a system that implements a security capability comparable to the capability implemented on the system being serviced; or Remove the component to be serviced from the system prior to nonlocal maintenance or diagnostic services; sanitize the component (for organizational information); and after the service is performed, inspect and sanitize the component (for potentially malicious software) before reconnecting the component to the system.
Discussion
Comparable security capability on systems, diagnostic tools, and equipment providing maintenance services implies that the implemented controls on those systems, tools, and equipment are at least as comprehensive as the controls on the system being serviced.
- Framework
- NIST SP 800-53 Rev 5
- Family
- Maintenance
- Baselines
- high
Related Frameworks
4 paths across 2 frameworks
Related Frameworks
SCF1 mapping
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
CCI3 mappings
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
Related STIGs
139 STIGs reach this control through 27 CCIs. Expand a row to see the responsible NICE and O*NET roles.