← Back to catalog
SI-7(15)

Code Authentication

System and Information Integrity (SI)
Baselines
Low · Not includedModerate · Not includedHigh · Included
Description

Implement cryptographic mechanisms to authenticate the following software or firmware components prior to installation: [assignment].

Discussion

Cryptographic authentication includes verifying that software or firmware components have been digitally signed using certificates recognized and approved by organizations. Code signing is an effective method to protect against malicious code. Organizations that employ cryptographic mechanisms also consider cryptographic key management solutions.

Implementation guidance

No content available.

CSF 2.0 crosswalk

No CSF mappings exist for this control.