Skip to the content.

APJ Enterprise LLC

Password and Authentication Policy
FedRAMP Moderate | NIST SP 800-53 Rev. 5 | DoD-Aligned

1. Purpose

This policy defines password and authenticator requirements for all APJ Enterprise LLC systems operating under the FedRAMP Moderate baseline.

2. Scope

Applies to all employees, contractors, and third parties with logical access to APJ Enterprise LLC information systems.

3. Policy

3.1 Composition and Strength

3.2 Rotation and Reuse

3.3 Multi-Factor Authentication (MFA)

3.4 Storage and Transmission

3.5 Account Lockout

4. Responsibilities

5. Control Mappings

| Control | Framework | Description | |———-|————|————-| | IA-2, IA-5 | NIST SP 800-53 Rev 5 | Identification & Authentication | | AC-2 | FedRAMP Moderate | Account Management | | CM-6 | FedRAMP Moderate | Configuration Settings | | 800-63B | NIST | Digital Identity Guidelines |

6. References