The CPSC should review the external service provider’s customer responsibility matrices,select, tailor, implement the relevant security controls from those matrices and thendocument (and periodically reassess) those controls to support the ongoing authorizationto operate and use decision.
Report
Date Issued
Oversight.gov UUID
ec579688-4ea0-4763-9b70-334076a9f2bd
Status
Closed
Recommendation Number
5
Sync
No
Questioned Costs
0
Significant Recommendation
Off