control inheritance

control inheritance

A situation in which a system or application receives protection from controls (or portions of controls) that are developed, implemented, assessed, authorized, and monitored by entities other than those responsible for the system or application; entities either internal or external to the organization where the system or application resides.

📚 Reference: NIST SP 800-37 Rev. 2
🏷️ Category: Cybersecurity
📊 Commonality: common