last sync: 2024-Nov-25 18:54:24 UTC

Microsoft Managed Control 1737 - Plan Of Action And Milestones Process | Regulatory Compliance - Program Management

Azure BuiltIn Policy definition

Source Azure Portal
Display name Microsoft Managed Control 1737 - Plan Of Action And Milestones Process
Id 3bd6a378-4173-411d-a958-dc699b0ee2fd
Version 1.0.0
Details on versioning
Versioning Versions supported for Versioning: 0
Built-in Versioning [Preview]
Category Regulatory Compliance
Microsoft Learn
Description Microsoft implements this Program Management control
Additional metadata Name/Id: ACF1737 / Microsoft Managed Control 1737
Category: Program Management
Title: Plan of Action And Milestones Process - Process for Development And Maintenance
Ownership: Customer, Microsoft
Description: The organization: Implements a process for ensuring that plans of action and milestones for the security program and associated organizational information systems: Are developed and maintained; Document the remedial information security actions to adequately respond to risk to organizational operations and assets, individuals, other organizations, and the Nation; and Are reported in accordance with OMB FISMA reporting requirements.
Requirements: Azure develops plans of action and milestones (POA&Ms) in accordance with OMB guidance and system requirements. Microsoft includes an action step to remediate any high and medium items from ongoing assessments and vulnerability scans (if any) consistent with the vulnerability management process in the monthly POA&M submission.
Mode Indexed
Type Static
Preview False
Deprecated False
Effect Fixed
audit
RBAC role(s) none
Rule aliases none
Rule resource types IF (2)
Microsoft.Resources/subscriptions
Microsoft.Resources/subscriptions/resourceGroups
Compliance Not a Compliance control
Initiatives usage none
History
Date/Time (UTC ymd) (i) Change type Change detail
2022-04-01 20:29:14 add 3bd6a378-4173-411d-a958-dc699b0ee2fd
JSON compare n/a
JSON
api-version=2021-06-01
EPAC