Templates
Information Security
NIST 800-171 Compliance Checklist
🔒

NIST 800-171 Compliance Checklist

1
Identify Controlled Unclassified Information (CUI) that is collected, processed, stored or transmitted
2
Determine and document the types of systems and components that process, store, or transmit CUI
3
Assess the current state of security controls
4
Implement new security controls as needed to meet NIST 800-171 requirements
5
Evaluation of system security plan implementation
6
Establish personnel security requirements
7
Identify, analyze & monitor operational risks
8
Approval: Operational Risks Analysis
9
Develop and execute incident response plan
10
Implement mobile device management solutions
11
Develop and enforce cryptography methods
12
Establish maintenance procedures for system integrity
13
Review user access and permissions
14
Ensure configuration management is in place
15
Develop and document System Security Plan (SSP)
16
Conduct a self-assessment of system security plan effectiveness
17
Approval: System Security Plan
18
Correct any identified deficiencies
19
Submit SSP and self-assessment to DoD CIO for review