From the course: NIST 800-53r5: Introduction to Security and Privacy Controls

Unlock this course with a free trial

Join today to access over 24,900 courses taught by industry experts.

Common, system, and hybrid controls

Common, system, and hybrid controls

- Okay, so for Lesson 2.5, let's talk about common, system, and hybrid controls. This is another important concept in 800-53 for managing risk, and... So for this lesson, you'll learn how to define common, system, hybrid controls, explain some of the examples of each one, differentiate between each one of the control types, and understand what we mean by these three different types. So here's kind of a visual to understand common controls are really inherited, and they're implemented the organization level. So, yeah, we talked about those dash one controls, a lot of times those are implemented by the organization, and they flow down through the systems. And then, the system controls are just what they say, this is at the application operating system, whatever parts of the accreditation boundary, that system is what it's implementing to control. And then you have the idea of a hybrid control, which is that overlap, so that means the system may implement some of it, I'm sorry the…

Contents