|
controlSC-5
Denial-of-service Protection (SC-5)
[organization-defined] the effects of the following types of denial-of-service events: [organization-defined] ; and Employ the following controls to achieve the denial-of-service objective: [organization-defined].
Security Baselines
LOWMODERATEHIGH
communicationsencryptionboundary-protectionnetwork
Why These Connect
Maps To4
These are equivalent or closely aligned requirements in other frameworks.
Baselined In3
This control is included in the linked security baseline (LOW, MODERATE, or HIGH).
Supports18
These related controls work together — a change to one may affect the others.
Mitigates2
This control helps defend against or reduce the risk of the linked threat technique.
Enhances3
These enhancements add specific capabilities or refinements to the base control.
Related Controls(11)
CA-7Continuous Monitoring (CA-7)
LMH
IR-4Incident Handling (IR-4)LMH
IR-5Incident Monitoring (IR-5)LMH
PM-31Continuous Monitoring Strategy (PM-31)SA-24Design For Cyber Resiliency (SA-24)CP-2Contingency Plan (CP-2)LMH
SC-6Resource Availability (SC-6)SC-7Boundary Protection (SC-7)LMH
SC-40Wireless Link Protection (SC-40)SI-4System Monitoring (SI-4)LMH
SI-8Spam Protection (SI-8)MH
Threat Coverage(2 ATT&CK techniques)
Cross-Framework Mappings(4)
PR.IR-01PR.IR-01Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
DE.CM-01DE.CM-01Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
PR.IR-01PR.IR-01Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
DE.CM-01DE.CM-01Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
Organization-Defined Parameters(3)
Assignmentorganization-defined types of denial-of-service events
SelectionSelection (one or more): protect against / limit
Assignmentorganization-defined controls by type of denial-of-service event