---
sourceDocument: Yokohama Governance, Risk, and Compliance
sourceDocumentLink: https://www.servicenow.com/docs/r/yokohama/governance-risk-compliance

 Release :

    - yokohama

ft:locale :

    - en-US

ft:publication_title :

    - Yokohama Governance, Risk, and Compliance

ft:clusterId :

    - grc

bundleId :

    - grc

workflow :

    - Technology


---

# Review and perform control attestations

# Review and perform control attestations {#ariaid-title1}

* Release version: Yokohama
* 
* Updated July 31, 2025
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Review and perform control attestations relating to NIST RMF security
attestations.

## Before you begin

Note:  
Starting with version 10.1.0, the NIST RMF Use Case Accelerator will be supported only for customers who currently use the product. New and existing customers should consider using the GRC: Continuous Authorization Monitoring application. For details, [Continuous Authorization and Monitoring](https://www.servicenow.com/docs/s5uGqPgL9j543l_fdj99WQ "Continuous Authorization and Monitoring (CAM) employs the seven steps defined by the NIST Risk Management Framework (RMF) to allow you to make better-informed decisions about your security posture.").

Role required: sn_irm_nist_rmf.security_accessor, sn_irm_nist_rmf.risk_executive, or sn_irm_nist_rmf.security_officer

## Procedure

1. Navigate to AllNIST RMFAssessControl Attestations.
2. Review each control attestation and its results.
3. Perform any control attestations assigned to you following the standard approach outlined in the Policy and Compliance Management application.
{#rmf-perform-control-attestations__steps_qxm_nsc_jhb}

*[\>]: and then


