|
controlPM-23
Data Governance Body (PM-23)
Establish a Data Governance Body consisting of [organization-defined] with [organization-defined].
program-managementgovernancestrategy
Why These Connect
Maps To6
These are equivalent or closely aligned requirements in other frameworks.
Supports17
These related controls work together — a change to one may affect the others.
Related Controls(11)
AT-3Role-based Training (AT-3)
LMH
CA-7Continuous Monitoring (CA-7)LMH
PM-19Privacy Program Leadership Role (PM-19)PM-22Personally Identifiable Information Quality Management (PM-22)AT-2Literacy Training and Awareness (AT-2)LMH
PM-24Data Integrity Board (PM-24)PT-7Specific Categories of Personally Identifiable Information (PT-7)SI-4System Monitoring (SI-4)LMH
SI-19De-identification (SI-19)PM-25Minimization of Personally Identifiable Information Used in Testing, Training, and Research (PM-25)PM-31Continuous Monitoring Strategy (PM-31)Cross-Framework Mappings(6)
ID.AM-08ID.AM-08Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
GV.RR-01GV.RR-01Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
GV.RR-02GV.RR-02Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
ID.AM-08ID.AM-08Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
GV.RR-01GV.RR-01Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
GV.RR-02GV.RR-02Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
Organization-Defined Parameters(2)
Assignmentorganization-defined roles
Assignmentorganization-defined responsibilities