HomeControl Library › 3.7.5
3.7 Maintenance5 pts

3.7.5 — MFA for remote maintenance

Require multifactor authentication to establish nonlocal maintenance sessions via external network connections and terminate such connections when nonlocal maintenance is complete.

Remote/nonlocal maintenance requires MFA and is torn down when done.

What it actually means

When maintenance happens over an external network (a vendor remoting in), it must use MFA, and the connection must be terminated when the work is done — no lingering remote-maintenance tunnels. Ties maintenance to your MFA and remote-access controls.

Pass or fail — an assessor needs a "yes" to each

What to have ready

Where teams trip up

See where this control puts your score

Run all 110 requirements free in about 10 minutes.

Calculate your SPRS score →

Connected requirements

← Back to the Control Library