Documents how the system is assessed for control effectiveness, authorized for operation, and continuously monitored. Covers the controls of the CA family in NIST SP 800-53 r5 and aligns with NIST SP 800-37 r2 (RMF), NIST SP 800-53A r5 (Assessment), NIST SP 800-137 (Continuous Monitoring), NIST SP 800-47 r1 (Information Exchange), and NIST SP 800-115 (Penetration Testing).
Public site — unclassified data only.
Do not enter classified, CUI, or other sensitive non-public information into this plan. Use placeholders for sensitive content and complete those fields on an authorized system within the appropriate enclave.