|
controlAC-16
Security and Privacy Attributes (AC-16)
Provide the means to associate [organization-defined] with [organization-defined] for information in storage, in process, and/or in transmission; Ensure that the attribute associations are made and retained with the information; Establish the following permitted security and privacy attributes from the attributes defined in [AC-16a](#ac-16_smt.a) for [organization-defined]: [organization-defined]; Determine the following permitted attribute values or ranges for each of the established attributes
access-controlauthorizationleast-privilege
Why These Connect
Supports19
These related controls work together — a change to one may affect the others.
Enhances10
These enhancements add specific capabilities or refinements to the base control.
Related Controls(16)
AC-3Access Enforcement (AC-3)
LMH
AC-4Information Flow Enforcement (AC-4)MH
AC-6Least Privilege (AC-6)MH
AC-21Information Sharing (AC-21)MH
AC-25Reference Monitor (AC-25)AU-2Event Logging (AU-2)LMH
AU-10Non-repudiation (AU-10)H
MP-3Media Marking (MP-3)MH
PE-22Component Marking (PE-22)PT-2Authority to Process Personally Identifiable Information (PT-2)PT-3Personally Identifiable Information Processing Purposes (PT-3)PT-4Consent (PT-4)SC-11Trusted Path (SC-11)SC-16Transmission of Security and Privacy Attributes (SC-16)SI-12Information Management and Retention (SI-12)LMH
SI-18Personally Identifiable Information Quality Operations (SI-18)Control Enhancements(10)
AC-16(1)Dynamic Attribute Association (AC-16(1))AC-16(2)Attribute Value Changes by Authorized Individuals (AC-16(2))AC-16(3)Maintenance of Attribute Associations by System (AC-16(3))AC-16(4)Association of Attributes by Authorized Individuals (AC-16(4))AC-16(5)Attribute Displays on Objects to Be Output (AC-16(5))AC-16(6)Maintenance of Attribute Association (AC-16(6))AC-16(7)Consistent Attribute Interpretation (AC-16(7))AC-16(8)Association Techniques and Technologies (AC-16(8))AC-16(9)Attribute Reassignment — Regrading Mechanisms (AC-16(9))AC-16(10)Attribute Configuration by Authorized Individuals (AC-16(10))