KSI-CNA-EIS - Cloud Native Architecture
Enforcing Intended State
Official statement
Automated services are used to persistently assess the security of all machine-based information resources and automatically enforce their intended operational state.
Official class marker: C.
Related SP 800-53 controls (official citation)
- CA-02 (01)
- CA-07 (01)
Other Cloud Native Architecture indicators
- KSI-CNA-DFP - Defining Functionality and Privileges
- KSI-CNA-IBP - Implementing Best Practices
- KSI-CNA-MAT - Minimizing Attack Surface
- KSI-CNA-OFA - Optimizing for Availability
- KSI-CNA-RNT - Restricting Network Traffic
- KSI-CNA-RVP - Reviewing Protections
- KSI-CNA-ULN - Using Logical Networking
Source: https://fedramp.gov/2026/reference/20x/c/key-security-indicators/. Pinned 2026-09-27 (catalog fedramp-20x-ksi/official-1.0.0-cr26). This page shows the list as pinned on that date. A weekly automated check flags any difference from the official page.