NIST 800-53 Rev 5

424 controls available

SI-7(15)high

Code Authentication

System and Information Integrity

Control Statement

Implement cryptographic mechanisms to authenticate the following software or firmware components prior to installation: {{ insert: param, si-07.15_odp }}.

Discussion

Cryptographic authentication includes verifying that software or firmware components have been digitally signed using certificates recognized and approved by organizations. Code signing is an effective method to protect against malicious code. Organizations that employ cryptographic mechanisms also consider cryptographic key management solutions.

Framework
NIST SP 800-53 Rev 5
Family
System and Information Integrity
Baselines
high

Related Frameworks

2 paths across 1 framework
CCI2 mappings
CCI-002739
1.00
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-002740
1.00
  • DISA · 2025-01-23 · disa_cci_list · equivalent

Related STIGs

6 STIGs reach this control through 46 CCIs. Expand a row to see the responsible NICE and O*NET roles.

Operating System — Mainframe

2 STIGs
Mainframe Product Security Requirements Guide
32024-12-055 of 193 findings match
Mainframe Product Security Requirements Guide
V3R42025-09-105 of 194 findings match

Network Device

2 STIGs

Endpoint Security Management

2 STIGs