AC.L2-3.14.5[a] — System & Information Integrity (System & File Scanning)Domain: System & Information Integrity (SI) | Practice: SI.L2-3.14.5 | Objective ID: 3.14.5[a] | Source: NIST SP 800-171 Rev. 2 / CMMC 2.0 Level 2 | Assessment Objective: The frequency of system scans is defined. |
Executive Summary
CMMC objective AC.L2-3.14.5[a] requires defining the frequency of system scans. For organizations that handle Controlled Unclassified Information (CUI), this objective is part of the foundation that every downstream control depends on.