KSI-CNA-IBP - Cloud Native Architecture
Implementing Best Practices
Official statement
The use and configuration of third-party machine-based information resources is persistently compared against the original provider's best practices and guidance.
Related SP 800-53 controls (official citation)
- AC-17 (03)
- CM-02
- PL-10
Other Cloud Native Architecture indicators
- KSI-CNA-DFP - Defining Functionality and Privileges
- KSI-CNA-EIS - Enforcing Intended State
- KSI-CNA-MAT - Minimizing Attack Surface
- KSI-CNA-OFA - Optimizing for Availability
- KSI-CNA-RNT - Restricting Network Traffic
- KSI-CNA-RVP - Reviewing Protections
- KSI-CNA-ULN - Using Logical Networking
Source: https://fedramp.gov/2026/reference/20x/c/key-security-indicators/. Pinned 2026-09-27 (catalog fedramp-20x-ksi/official-1.0.0-cr26). This page shows the list as pinned on that date. A weekly automated check flags any difference from the official page.