NIST 800-53 REV 5 • CONFIGURATION MANAGEMENT
CM-7(3) — Registration Compliance
Ensure compliance with {{ insert: param, cm-07.03_odp }}.
CMMC Practice Mapping
No direct CMMC mapping
NIST 800-171 Mapping
No direct NIST 800-171 mapping
Related Controls
No related controls listed
Supplemental Guidance
Organizations use the registration process to manage, track, and provide oversight for systems and implemented functions, ports, protocols, and services.
Practitioner Notes
This enhancement requires that software components be registered and tracked in a central system — you need to know what software is running and ensure it complies with licensing and security requirements.
Example 1: Maintain a software register in your asset management tool that lists all approved software with version numbers, license counts, and security approval status.
Example 2: Use SCCM Software Metering or Intune discovered apps to track what software is actually installed and running, comparing against your approved list.