STIGhubSTIGhub
STIGsRMF ControlsCompare
STIGhub— A free STIG search and compliance tool·STIGs updated 3 days ago
Powered by Pylon·Privacy·Terms·© 2026 Beacon Cloud Solutions, Inc.
← All Controls

SI-4 (4)

System and Information IntegrityRev 5system

Inbound and Outbound Communications Traffic

Baselines:ModerateHigh

Control Statement

(a) Determine criteria for unusual or unauthorized activities or conditions for inbound and outbound communications traffic; (b) Monitor inbound and outbound communications traffic [Assignment: organization-defined frequency] for [Assignment: organization-defined unusual or unauthorized activities or conditions].

Supplemental Guidance

Unusual or unauthorized activities or conditions related to system inbound and outbound communications traffic includes internal traffic that indicates the presence of malicious code or unauthorized use of legitimate code or credentials within organizational systems or propagating among system components, signaling to external systems, and the unauthorized exporting of information. Evidence of malicious code or unauthorized use of legitimate code or credentials is used to identify potentially compromised systems or system components.

CCI Identifiers (9)

CCI-001262The information system monitors inbound and outbound communications for unusual or unauthorized activities or conditions.CCI-002659Defines the frequency on which it will monitor inbound communications for unusual or unauthorized activities or conditions.CCI-002660Defines the frequency on which it will monitor outbound communications for unusual or unauthorized activities or conditions.CCI-002661Monitor inbound communications traffic per organization-defined frequency for organization-defined unusual or unauthorized activities or conditions.CCI-002662Monitor outbound communications traffic per organization-defined frequency for organization-defined unusual or unauthorized activities or conditions.CCI-004971Determine criteria for unusual or unauthorized activities or conditions for inbound communications traffic.CCI-004972Determine criteria for unusual or unauthorized activities or conditions for outbound communications traffic.CCI-004973Defines the unusual or unauthorized activities or conditions that will be monitored for inbound communications traffic.

Linked STIG Checks (28)

Across 17 STIGs. Click to expand.

CCI-004974Defines the unusual or unauthorized activities or conditions that will be monitored for outbound communications traffic.