NIST 800-53 Rev. 5

SC-7(13): Boundary Protection | Isolation of Security Tools, Mechanisms, and Support Components

Control Text:

Isolate [Assignment: organization-defined information security tools, mechanisms, and support components] from other internal system components by implementing physically separate subnetworks with managed interfaces to other components of the system.

Physically separate subnetworks with managed interfaces are useful in isolating computer network defenses from critical operational processing networks to prevent adversaries from discovering the analysis and forensics techniques employed by organizations.

Related Controls