NIST 800-53 REV 5 • SYSTEM AND INFORMATION INTEGRITY

SI-8(1)Central Management

CMMC Practice Mapping

No direct CMMC mapping

NIST 800-171 Mapping

No direct NIST 800-171 mapping

Related Controls

No related controls listed

Practitioner Notes

Manage spam protection centrally so all email flows through the same filtering with consistent policies.

Example 1: Use the Microsoft 365 Defender portal as your central management point for all email security — anti-spam, anti-phishing, safe links, and safe attachments. Manage all policies from one console rather than configuring filtering on individual mail servers.

Example 2: If using a third-party email gateway, route all inbound and outbound email through it. Update your MX records to point to the gateway, and block direct SMTP connections to your mail server from the internet. All email must pass through central filtering.