Under the CJIS Security Policy, which document must be maintained to record the approved baseline configuration of a system accessing CJIS data?
-
A
System Risk Register
-
B
System Security Plan (SSP)
-
C
Configuration Management Plan (CMP)
-
D
Security Assessment Report (SAR)