Overview

Security Requirements for 03.01.19 Encrypt CUI on Mobile

Organizations can employ full-device encryption or container-based encryption to protect the confidentiality of CUI on mobile devices and computing platforms. Container-based encryption provides a more fine-grained approach to the encryption of data and information including encrypting selected data structures such as files, records, or fields. See [NIST CRYPTO].

Evidence

  1. 03.01.19.a

    Mobile devices and mobile computing platforms that process, store, or transmit cui are identified

  1. 03.01.19.b

    Encryption is employed to protect cui on identified mobile devices and mobile computing platforms