Screens lock automatically after inactivity and hide what was on them.
What it actually means
Use a session lock with pattern-hiding displays after a period of inactivity, so an unattended device doesn't expose CUI. Set an automatic screen lock with a short idle timeout across workstations and laptops.
Pass or fail — an assessor needs a "yes" to each
- Do devices auto-lock after a defined idle period?
- Does the lock hide on-screen content (no preview of CUI)?
What to have ready
- Screen-lock policy configuration and timeout value
Where teams trip up
- A long or absent idle timeout
- Lock screens that still show notification content
See where this control puts your score
Run all 110 requirements free in about 10 minutes.
Calculate your SPRS score →