# SR-10 — Inspection of Systems or Components

- **Control ID:** SR-10
- **Family:** [SR](/md/families/SR.md)
- **Baselines:** low, moderate, high
- **Enhancement of:** No content available.

## Description

Inspect the following systems or system components \[assignment\] to detect tampering: \[assignment\].

## Discussion

The inspection of systems or systems components for tamper resistance and detection addresses physical and logical tampering and is applied to systems and system components removed from organization-controlled areas. Indications of a need for inspection include changes in packaging, specifications, factory location, or entity in which the part is purchased, and when individuals return from travel to high-risk locations.

## Implementation guidance

No content available.

## CSF 2.0 subcategories

- [GV.SC-05](/md/csf/GV.SC-05.md) — Requirements to address cybersecurity risks in supply chains are established, prioritized, and integrated into contracts and other types of agreements with suppliers and other relevant third parties
- [ID.RA-09](/md/csf/ID.RA-09.md) — The authenticity and integrity of hardware and software are assessed prior to acquisition and use

## Related controls

- [AT-3](/md/controls/AT-3.md)
- [PM-30](/md/controls/PM-30.md)
- [SI-4](/md/controls/SI-4.md)
- [SI-7](/md/controls/SI-7.md)
- [SR-3](/md/controls/SR-3.md)
- [SR-4](/md/controls/SR-4.md)
- [SR-5](/md/controls/SR-5.md)
- [SR-9](/md/controls/SR-9.md)
- [SR-11](/md/controls/SR-11.md)

---

Derived from official NIST publications (NIST SP 800-53 Rev 5 and NIST CSF 2.0). nistcontrols.com is not affiliated with NIST.
