FedRAMP Controls / CM

CM-11 User-installed Software

Family CM
Baselines moderate
Mapped KSIs 0

Control statement

a. Establish {{ insert: param, cm-11_odp.01 }} governing the installation of software by users;
    b. Enforce software installation policies through the following methods: {{ insert: param, cm-11_odp.02 }} ; and
    c. Monitor policy compliance {{ insert: param, cm-11_odp.03 }}.

Parameter placeholders {{ insert: param, … }} reference FedRAMP-set values in the resolved profile. Full parameter map is preserved in the catalog database.

No 20x Key Security Indicators map to this control in the current catalog version.