SV-213324r506897_rule
V-213324
SRG-APP-000386
MCAC-PO-000109
CAT II
10
Follow the formal change and acceptance process to update the written policy to include a process for how applications are vetted and deemed to be allowed.
Consult with the ISSO/ISSM to review the organizational-specific written policy for the McAfee Application Control software.
Verify the written policy includes a process for how applications are vetted and deemed to be allowed.
If no written policy exists, this is a finding.
If written policy does not include a process for vetting applications before allowing them, this is a finding.
V-213324
False
MCAC-PO-000109
Consult with the ISSO/ISSM to review the organizational-specific written policy for the McAfee Application Control software.
Verify the written policy includes a process for how applications are vetted and deemed to be allowed.
If no written policy exists, this is a finding.
If written policy does not include a process for vetting applications before allowing them, this is a finding.
M
3982