CM.L2-3.4.5

Originally published at: https://grcacademy.io/cmmc/controls/cm-l2-3-4-5/

Define, document, approve, and enforce physical and logical access restrictions associated with changes to organizational systems.