|
controlCA-8

Penetration Testing (CA-8)

Conduct penetration testing [organization-defined] on [organization-defined].

Security Baselines

HIGHLOWMODERATE
assessmentauthorizationmonitoring

Why These Connect

Baselined In1

This control is included in the linked security baseline (LOW, MODERATE, or HIGH).

Supports5

These related controls work together — a change to one may affect the others.

Mitigates1

This control helps defend against or reduce the risk of the linked threat technique.

Enhances3

These enhancements add specific capabilities or refinements to the base control.

Threat Coverage(1 ATT&CK techniques)

Control Enhancements(3)