unified
UC-VULN-06 — Verify software, firmware, and information integrity
Employ integrity-verification mechanisms — file-integrity monitoring, cryptographic hash or signature validation, and secure or measured boot where supported — to detect unauthorized changes to software, firmware, and critical information, alerting designated personnel on detection. Verify the correct operation of security and privacy functions at startup, on demand, and on a defined schedule, and act on failures or anomalies. Continuously monitor computing hardware, software, and runtime environments so unexpected changes surface as potentially adverse events for analysis.
Record JSON · Open in map · Data retrieval guide
Catalog revision: 24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028. A connection does not establish full coverage.
Attributes
- domain
- Vulnerability & Patch Management
- type
- detective
- category
- technical
Details
- unified_id
- UC-VULN-06
- title
- Verify software, firmware, and information integrity
- statement
- Employ integrity-verification mechanisms — file-integrity monitoring, cryptographic hash or signature validation, and secure or measured boot where supported — to detect unauthorized changes to software, firmware, and critical information, alerting designated personnel on detection. Verify the correct operation of security and privacy functions at startup, on demand, and on a defined schedule, and act on failures or anomalies. Continuously monitor computing hardware, software, and runtime environments so unexpected changes surface as potentially adverse events for analysis.
- domain
- Vulnerability & Patch Management
- control_type
- detective
- control_category
- technical
- members
- framework
- nist-800-53
- control_id
- SI-6
- coverage
- full
- relationship
- superset_of
- framework
- nist-800-53
- control_id
- SI-7
- coverage
- full
- relationship
- superset_of
- framework
- nist-csf-2
- control_id
- DE.CM-09
- coverage
- full
- relationship
- superset_of
- guidance
Source
No record-specific source URL is provided.
Connections
- UC-VULN-06 — Verify software, firmware, and information integrity mitigates Zero-day exploitation
- strength
- related
- rationale
- Continuous integrity monitoring surfaces the unexpected changes left by unknown-vulnerability exploitation as adverse events.
- Security Control Assessment & POA&M Remediation tests UC-VULN-06 — Verify software, firmware, and information integrity
- UC-VULN-06 — Verify software, firmware, and information integrity maps_to SI-6 — Security and Privacy Function Verification
- framework
- nist-800-53
- control_id
- SI-6
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- Rev. 5
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- UC-VULN-06 — Verify software, firmware, and information integrity mitigates Poor configuration management and insecure baseline drift
- strength
- related
- rationale
- Integrity monitoring detects unauthorized changes and deviations from the trusted baseline.
- UC-VULN-06 — Verify software, firmware, and information integrity maps_to DE.CM-09 — Continuous Monitoring: Computing hardware and software, runtime environments, and their data are monitored to find potentially adverse events
- framework
- nist-csf-2
- control_id
- DE.CM-09
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- 2.0
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- Secure Baseline & Integrity Drift Management operates UC-VULN-06 — Verify software, firmware, and information integrity
- UC-VULN-06 — Verify software, firmware, and information integrity maps_to SI-7 — Software, Firmware, and Information Integrity
- framework
- nist-800-53
- control_id
- SI-7
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- Rev. 5
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- UC-VULN-06 — Verify software, firmware, and information integrity mitigates Malware delivery, insertion and compromise of systems
- strength
- primary
- rationale
- File-integrity monitoring and signature/boot validation detect the unauthorized changes malware makes to system software, surfacing compromise.