---
sourceDocument: Australia Governance, Risk, and Compliance
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/governance-risk-compliance

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Governance, Risk, and Compliance

ft:clusterId :

    - grc

bundleId :

    - grc

workflow :

    - Technology


---

# Manage and implement controls

# Manage and implement controls {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

From a list of security controls stemming from NIST 800-53.r4 policy statements,
review the controls and update implementation details.

## Before you begin

Note:  
Starting with version 10.1.0, the NIST RMF Use Case Accelerator will be supported only for customers who currently use the product. New and existing customers should consider using the GRC: Continuous Authorization Monitoring application. For details, [Continuous Authorization and Monitoring](https://servicenow-prod.fluidtopics.net/h3gzNp_jxonigLFyLYLQCw "Continuous Authorization and Monitoring (CAM) employs the seven steps defined by the NIST Risk Management Framework (RMF) to allow you to make better-informed decisions about your security posture.").

Role required: sn_irm_nist_rmf.risk_executive or sn_irm_nist_rmf.security_officer

## Procedure

1. Navigate to AllNIST RMFImplementActive Controls.
2. Review each control and physically implement them following the standard approach outlined in the Policy and Compliance Management application.
{#rmf-manage-implement-controls__steps_qxm_nsc_jhb}

*[\>]: and then


