V-222560
Application Security and Development Security Technical Implementation Guide
Title
The application must conform to Federal Identity, Credential, and Access Management (FICAM)-issued profiles.
Description
<VulnDiscussion>FICAM establishes a federated identity framework for the federal government. FICAM provides governmentwide services for common Identity, Credential, and Access Management (ICAM) requirements. The FICAM Trust Framework Solutions (TFS) is the federated identity framework for the U.S. federal government. The TFS is a process by which Industry Trust Frameworks (the codification of requirements for credentials and their issuance, privacy and security requirements, as well as auditing ...
Fix Text (Documentation Requirement)
Configure the application to conform to FICAM-issued technical profiles when providing services that rely on external (federal government) identity providers.