SI-5 - Security Alerts, Advisories, and Directives

a. Receive system security alerts, advisories, and directives from [Assignment: organization-defined external organizations] on an ongoing basis; b. Generate internal security alerts, advisories, and directives as deemed necessary; c. Disseminate security alerts, advisories, and directives to: [Selection (one or more): [Assignment: organization-defined personnel or roles] ; [Assignment: organization-defined elements within the organization] ; [Assignment: organization-defined external organizations] ]; and d. Implement security directives in accordance with established time frames, or notify the issuing organization of the degree of noncompliance.


ID: SI-5
Enhancements:  1