NIST SP 800-53 Rev. 5
AC-20(1)
Access Control
enhancement

Limits on Authorized Use

Parent: AC-20

Description

Permit authorized individuals to use an external system to access the system or to process, store, or transmit organization-controlled information only after: a. Verification of the implementation of controls on the external system as specified in the organization’s security and privacy policies and security and privacy plans; or b. Retention of approved system connection or processing agreements with the organizational entity hosting the external system.

Mapped SPARTA techniques

67 techniques

Cite as SafeMode Space, nist-80053-rev5 AC-20(1).

Built 2026-07-25 from 216 techniques, 334 regulation articles, 125 ENISA controls, 2,610 framework controls, and 90 countermeasures.