SC-04 Information Remnance

System and Communications Protection

Low Moderate High

Description

The information system prevents unauthorized and unintended information transfer via shared system resources.\n

Supplemental Guidance

Control of information system remnance, sometimes referred to as object reuse, or data remnance, prevents information, including encrypted representations of information, produced by the actions of a prior user/role (or the actions of a process acting on behalf of a prior user/role) from being available to any current user/role (or current process) that obtains access to a shared system resource (e.g., registers, main memory, secondary storage) after that resource has been released back to the information system.\n

Enhancements

(0) None.\n

Compliance Mappings

ISO 17799 (legacy)

10.8.1

COBIT 4.1 (legacy)

None.