FedRAMP Controls / CM

CM-4(2) Verification of Controls

Family CM
Baselines moderate
Mapped KSIs 2

Control statement

After system changes, verify that the impacted controls are implemented correctly, operating as intended, and producing the desired outcome with regard to meeting the security and privacy requirements for the system.

Parameter placeholders {{ insert: param, … }} reference FedRAMP-set values in the resolved profile. Full parameter map is preserved in the catalog database.

Covered by these Key Security Indicators

KSITitleCategory
KSI-CMT-01Log and Monitor Changes
Log and monitor modifications to the cloud service offering.
Change Management
KSI-CMT-03Automated Testing and Validation
Automate persistent testing and validation of changes throughout deployment.
Change Management