SC-16 Transmission Of Security Parameters

System and Communications Protection

Low Moderate High

Description

The information system reliably associates security parameters with information exchanged between information systems.

Supplemental Guidance

Security parameters include, for example, security labels and markings. Security parameters may be explicitly or implicitly associated with the information contained within the information system.

Changes from Rev 4

Title changed from 'Transmission of Security Attributes' Parameter adds 'and privacy'  Discussion expanded to provide detailed explanation of attributes

Enhancements

(0) None.

MITRE ATT&CK Techniques (5)

ATT&CK v16.1

Techniques mitigated by this control, mapped via CTID.

Persistence 2 Command & Control 3

Compliance Mappings

ANSSI

Hygiene.24RGS.2.2SecNumCloud.14.2

FINMA Circular 2023/1

IV.C(63)

OSFI B-13

B-13.3.2

EU GDPR

Art.32(1)(a)

EU DORA

Art.9(3)

FISC Security Guidelines

FISC.T12

HKMA TM-E-1

TME1.9.3

DNB Good Practice

DNB.18.5DNB.2.2

EU CRA

CRA.I.2f

Qatar NIA

CS

SA JS2

JS2-6.1

IOSCO Cyber Resilience

PROT-3

BCBS 239

Principle 3Principle 7

CPMI-IOSCO PFMI

PFMI.P22

FFIEC IS

II.C.5

Common Criteria

CC Part 2 — FDP

Lloyd's Minimum Standards

BP2.2MS6.1

HITRUST CSF v11

07.b

ISO 17799 (legacy)

7.2.210.8.210.9.2

COBIT 4.1 (legacy)

DS5.11