unified

UC-CRYPTO-04 — Protect data in use from unauthorized access

Data being processed in memory or active sessions is protected against unauthorized access and exposure through techniques commensurate with risk, including process isolation, memory protections, masking of sensitive fields on display, and confidential-computing or equivalent enclave technologies for high-sensitivity workloads. Access to data in use is limited to the processing identity, and residual data is cleared from memory and temporary storage after use.

Record JSON · Open in map · Data retrieval guide

Catalog revision: 24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028. A connection does not establish full coverage.

Attributes

domain
Cryptography & Key Management
type
preventive
category
technical

Details

unified_id
UC-CRYPTO-04
title
Protect data in use from unauthorized access
statement
Data being processed in memory or active sessions is protected against unauthorized access and exposure through techniques commensurate with risk, including process isolation, memory protections, masking of sensitive fields on display, and confidential-computing or equivalent enclave technologies for high-sensitivity workloads. Access to data in use is limited to the processing identity, and residual data is cleared from memory and temporary storage after use.
domain
Cryptography & Key Management
control_type
preventive
control_category
technical
members
  • framework
    nist-csf-2
    control_id
    PR.DS-10
    coverage
    full
    relationship
    equal
guidance

    Source

    No record-specific source URL is provided.

    Connections