|
controlIA-12
Identity Proofing (IA-12)
Identity proof users that require accounts for logical access to systems based on appropriate identity assurance level requirements as specified in applicable standards and guidelines; Resolve user identities to a unique individual; and Collect, validate, and verify identity evidence.
Security Baselines
MODERATEHIGHLOW
identificationauthenticationidentity
Why These Connect
Maps To2
These are equivalent or closely aligned requirements in other frameworks.
Baselined In2
This control is included in the linked security baseline (LOW, MODERATE, or HIGH).
Supports11
These related controls work together — a change to one may affect the others.
Enhances6
These enhancements add specific capabilities or refinements to the base control.
Related Controls(9)
AC-5Separation of Duties (AC-5)
MH
IA-4Identifier Management (IA-4)LMH
IA-1Policy and Procedures (IA-1)LMH
IA-2Identification and Authentication (Organizational Users) (IA-2)LMH
IA-3Device Identification and Authentication (IA-3)MH
IA-5Authenticator Management (IA-5)LMH
IA-6Authentication Feedback (IA-6)LMH
IA-8Identification and Authentication (Non-organizational Users) (IA-8)LMH
IA-13Identity Providers and Authorization Servers (IA-13)Cross-Framework Mappings(2)
PR.AA-02PR.AA-02Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
PR.AA-02PR.AA-02Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
Control Enhancements(6)
IA-12(1)Supervisor Authorization (IA-12(1))IA-12(2)Identity Evidence (IA-12(2))
MH
IA-12(3)Identity Evidence Validation and Verification (IA-12(3))MH
IA-12(4)In-person Validation and Verification (IA-12(4))H
IA-12(5)Address Confirmation (IA-12(5))MH
IA-12(6)Accept Externally-proofed Identities (IA-12(6))