FedRAMP Controls / CM
CM-5(5) Privilege Limitation for Production and Operation
Family CM
Baselines moderate
Mapped KSIs 0
Control statement
(a) Limit privileges to change system components and system-related information within a production or operational environment; and
(b) Review and reevaluate privileges {{ insert: param, cm-5.5_prm_1 }}. Parameter placeholders {{ insert: param, … }} reference FedRAMP-set values in the resolved profile. Full parameter map is
preserved in the catalog database.
No 20x Key Security Indicators map to this control in the current catalog version.