SEARCH RESULTS


OPSWAT – Removable Media Policy: Guidelines & Best Practices     3.1 3.1.21 3.7 3.7.4 3.8 3.8.5 3.8.6 3.8.7 3.8.8 Access Control Maintenance Media Protection

https://www.opswat.com/blog/removable-media-policy-guidelines-best-practices

Implementing a removable media policy helps organizations control how employees use USB drives, external hard drives, and other portable storage devices. The main purpose is to prevent data breaches and malware infections while keeping sensitive company information secure. These policies set clear rules about what's allowed and what isn't, helping businesses stay compliant with important security standards like ISO 27001, NIST, and Department of Defense requirements.

YouTube – CMMC 2.0 Control MA L2-3.7.2 – Provide controls on the tools, techniques, mechanisms, and personnel     3.7 3.7.1 3.7.2 Maintenance

https://www.youtube.com/watch?v=JVookLZAqCk

In this video, Mike breaks down CMMC 2.0 Control MA L2-3.7.2. You need written procedures, you need documentation on your process for allowing access to your systems, you are going to have to justify every step of how you run your system on paper through written procedure and that includes your IT team and who gets access to what and how they get that access.