Information Technology Reference
In-Depth Information
Category/
Subcategory/ 
Element
Control 
Reference
Control Summary
Interpretation
PE-3
Physical access
control
The organization controls all
physical access points (including
designated entry/exit points) to
the facility where the information
system resides (except for those
areas within the facility officially
designated as publicly accessible)
and verifies individual access
authorizations before granting
access to the facility. The
organization controls access to
areas officially designated as
publicly accessible, as
appropriate, in accordance with
the organization's assessment of
risk.
PE-4
Access control for
transmission
medium
The organization controls physical
access to information system
distribution and transmission
lines within organizational
facilities.
PE-5
Access control for
display medium
The organization controls physical
access to information system
devices that display information
to prevent unauthorized
individuals from observing the
display output.
PE-6
Monitoring physical
access
The organization monitors
physical access to the
information system to detect and
respond to physical security
incidents.
PE-7
Visitor control
The organization controls physical
access to the information system
by authenticating visitors before
authorizing access to the facility
where the information system
resides other than areas
designated as publicly accessible.
 
Search WWH ::




Custom Search