|
controlIR-8
Incident Response Plan (IR-8)
Develop an incident response plan that: Distribute copies of the incident response plan to [organization-defined]; Update the incident response plan to address system and organizational changes or problems encountered during plan implementation, execution, or testing; Communicate incident response plan changes to [organization-defined] ; and Protect the incident response plan from unauthorized disclosure and modification.
Security Baselines
LOWMODERATEHIGH
incident-responsedetectioncontainment
Why These Connect
Maps To30
These are equivalent or closely aligned requirements in other frameworks.
Baselined In3
This control is included in the linked security baseline (LOW, MODERATE, or HIGH).
Supports22
These related controls work together — a change to one may affect the others.
Enhances1
These enhancements add specific capabilities or refinements to the base control.
Related Controls(15)
CP-2Contingency Plan (CP-2)
LMH
IR-2Incident Response Training (IR-2)LMH
IR-3Incident Response Testing (IR-3)MH
IR-4Incident Handling (IR-4)LMH
IR-5Incident Monitoring (IR-5)LMH
IR-6Incident Reporting (IR-6)LMH
IR-7Incident Response Assistance (IR-7)LMH
AC-2Account Management (AC-2)LMH
CP-4Contingency Plan Testing (CP-4)LMH
IR-9Information Spillage Response (IR-9)PE-6Monitoring Physical Access (PE-6)LMH
PL-2System Security and Privacy Plans (PL-2)LMH
SA-15Development Process, Standards, and Tools (SA-15)MH
SI-12Information Management and Retention (SI-12)LMH
SR-8Notification Agreements (SR-8)LMH
Cross-Framework Mappings(30)
ID.IM-01ID.IM-01Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
ID.IM-02ID.IM-02Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
ID.IM-03ID.IM-03Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
ID.IM-04ID.IM-04Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
DE.AE-03DE.AE-03Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
DE.AE-08DE.AE-08Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
RS.MAIncident Management (RS.MA)Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
RS.MA-01RS.MA-01Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
RS.MA-05RS.MA-05Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
RS.AN-08RS.AN-08Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
RC.RP-01RC.RP-01Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
RC.RP-02RC.RP-02Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
RC.RP-04RC.RP-04Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
RC.RP-06RC.RP-06Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
ISO 27001ISO/IEC 27001:20224 mappingsFinal
NIST OLIR informative reference — SP 800-53 Rev 5 to ISO/IEC 27001:2022
HIPAAHIPAA Security Rule1 mappingFinal
NIST OLIR informative reference — HIPAA Security Rule to SP 800-53 Rev 5
ID.IM-01ID.IM-01Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
ID.IM-02ID.IM-02Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
ID.IM-03ID.IM-03Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
ID.IM-04ID.IM-04Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
DE.AE-03DE.AE-03Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
DE.AE-08DE.AE-08Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
RS.MAIncident Management (RS.MA)Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
RS.MA-01RS.MA-01Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
RS.MA-05RS.MA-05Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
RS.AN-08RS.AN-08Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
RC.RP-01RC.RP-01Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
RC.RP-02RC.RP-02Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
RC.RP-04RC.RP-04Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
RC.RP-06RC.RP-06Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
Organization-Defined Parameters(7)
Assignmentorganization-defined personnel or roles
Assignmentorganization-defined frequency
Assignmentorganization-defined entities, personnel, or roles
Assignmentorganization-defined incident response personnel
Assignmentorganization-defined organizational elements
Assignmentorganization-defined incident response personnel
Assignmentorganization-defined organizational elements