NIST 800-53 REV 5 • CONFIGURATION MANAGEMENT

CM-7(3)Registration Compliance

Ensure compliance with {{ insert: param, cm-07.03_odp }}.

CMMC Practice Mapping

No direct CMMC mapping

NIST 800-171 Mapping

No direct NIST 800-171 mapping

Related Controls

No related controls listed

Supplemental Guidance

Organizations use the registration process to manage, track, and provide oversight for systems and implemented functions, ports, protocols, and services.

Practitioner Notes

This enhancement requires that software components be registered and tracked in a central system — you need to know what software is running and ensure it complies with licensing and security requirements.

Example 1: Maintain a software register in your asset management tool that lists all approved software with version numbers, license counts, and security approval status.

Example 2: Use SCCM Software Metering or Intune discovered apps to track what software is actually installed and running, comparing against your approved list.