NIST 800-53 REV 5 • SYSTEM AND INFORMATION INTEGRITY
SI-8(1) — Central Management
CMMC Practice Mapping
No direct CMMC mapping
NIST 800-171 Mapping
No direct NIST 800-171 mapping
Related Controls
No related controls listed
Practitioner Notes
Manage spam protection centrally so all email flows through the same filtering with consistent policies.
Example 1: Use the Microsoft 365 Defender portal as your central management point for all email security — anti-spam, anti-phishing, safe links, and safe attachments. Manage all policies from one console rather than configuring filtering on individual mail servers.
Example 2: If using a third-party email gateway, route all inbound and outbound email through it. Update your MX records to point to the gateway, and block direct SMTP connections to your mail server from the internet. All email must pass through central filtering.