|
controlIA-3

Device Identification and Authentication (IA-3)

Uniquely identify and authenticate [organization-defined] before establishing a [organization-defined] connection.

Security Baselines

MODERATEHIGHLOW
identificationauthenticationidentity

Why These Connect

Maps To5

These are equivalent or closely aligned requirements in other frameworks.

Baselined In2

This control is included in the linked security baseline (LOW, MODERATE, or HIGH).

Supports34

These related controls work together — a change to one may affect the others.

Enhances4

These enhancements add specific capabilities or refinements to the base control.

Cross-Framework Mappings(5)

PR.AA-01PR.AA-01Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
PR.AA-03PR.AA-03Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
HIPAAHIPAA Security Rule2 mappingsFinal
NIST OLIR informative reference — HIPAA Security Rule to SP 800-53 Rev 5
PR.AA-01PR.AA-01Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
PR.AA-03PR.AA-03Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5

Organization-Defined Parameters(2)

Assignmentorganization-defined devices and/or types of devices
SelectionSelection (one-or-more): local / remote / network

Control Enhancements(4)