Skip to content

Remote Access

What is Remote Access?

Technology and processes enabling authorized users to connect to organizational networks and resources from external locations securely.

Information Security

Each of these is named in at least one of the same controls as remote access. The number is how many controls name both.

What the standards actually require on remote access

Requirements naming remote access across 6 standards, quoted from the control text.

FedRAMP High5 controls

Establish usage restrictions, configuration requirements, and authorize remote access prior to allowing.

AC-17 · Remote Access

Establish usage restrictions, configuration requirements, and authorize remote access prior to allowing.

AC-17 · Remote Access
PCI DSS 4.05 controls

MFA is implemented for all remote access originating from outside the entity's network that could access or impact the CDE

8.4.3 · MFA is implemented for all remote access originating from outside the entity's network that could access or impact the CDE
CMMC 2.04 controls

Apply cryptographic protection to remote access sessions so session confidentiality is preserved in transit.

AC.L2-3.1.13 · Remote Access Confidentiality

UR E26 Goal 2 (Protect) requires controls for remote access + wireless + physical security. Remote access: required for vendor / OEM / shore support during voyage;

IACS-UR-E26-Protect-RemoteAccess-Wireless-Physical-Boundary · IACS UR E26 Protect Goal - Remote Access + Wireless + Physical Security + Boundary Protection
IEC 624434 controls

Interactive remote access security. Control from IEC 62443 framework, domain: IEC 62443: Access Management.

IEC62443-09 · Interactive remote access security

Questions people ask about remote access

What is Remote Access?
Technology and processes enabling authorized users to connect to organizational networks and resources from external locations securely.
Why is Remote Access important for compliance?
Remote Access is a key concept in Information Security. Understanding remote access helps organizations meet regulatory requirements, reduce risk, and demonstrate due diligence during audits. Our compliance platform maps 686 frameworks with 311K cross-framework control mappings.
Which compliance frameworks address Remote Access?
Remote Access appears in the requirement text of FedRAMP High, FedRAMP Moderate, PCI DSS 4.0, CMMC 2.0, IACS Unified Requirements E26/E27 - Cyber Resilience of Ships and On-Board Systems. Across these standards we have identified 27 controls that name it directly, each linked to the control text on the compliance platform.
Where can I learn more about Remote Access?
Explore our compliance framework pages to see how remote access applies across different standards and regulations. Our implementation guides provide step-by-step guidance, and the compliance platform offers AI-powered analysis of how this concept maps across 686 frameworks.

See how Remote Access applies across compliance frameworks

Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.

Written and maintained by Gerard Blokdyk, The Art of Service.