NIST SP 800-53 Rev. 5
SA-17(2)
System and Services Acquisition
enhancement

Security-relevant Components

Parent: SA-17

Description

Require the developer of the system, system component, or system service to: a. Define security-relevant hardware, software, and firmware; and b. Provide a rationale that the definition for security-relevant hardware, software, and firmware is complete.

Mapped SPARTA techniques

No techniques mapped to this control.

Cite as SafeMode Space, nist-80053-rev5 SA-17(2).

Built 2026-07-25 from 216 techniques, 334 regulation articles, 125 ENISA controls, 2,610 framework controls, and 90 countermeasures.