NIST Cybersecurity Framework (CSF) 2.0 2.0

ID.AM

Asset Management

Assets (e.g., data, hardware, software, systems, facilities, services, people) that enable the organization to achieve business purposes are identified and managed consistent with their relative importance to organizational objectives and the organization's risk strategy

Citation ID.AM
Clé de plateforme arcate:compliance:requirements/nist-csf/2.0/ID.AM
Emplacement dans la source row 43 of sheet 'CSF 2.0'
Publié par NIST

Exigences filles

ID.AM-01

Inventories of hardware managed by the organization are maintained

arcate:compliance:requirements/nist-csf/2.0/ID.AM-01

ID.AM-02

Inventories of software, services, and systems managed by the organization are maintained

arcate:compliance:requirements/nist-csf/2.0/ID.AM-02

ID.AM-03

Representations of the organization's authorized network communication and internal and external network data flows are maintained

arcate:compliance:requirements/nist-csf/2.0/ID.AM-03

ID.AM-04

Inventories of services provided by suppliers are maintained

arcate:compliance:requirements/nist-csf/2.0/ID.AM-04

ID.AM-05

Assets are prioritized based on classification, criticality, resources, and impact on the mission

arcate:compliance:requirements/nist-csf/2.0/ID.AM-05

ID.AM-06

[Withdrawn: Incorporated into GV.RR-02, GV.SC-02]

arcate:compliance:requirements/nist-csf/2.0/ID.AM-06

ID.AM-07

Inventories of data and corresponding metadata for designated data types are maintained

arcate:compliance:requirements/nist-csf/2.0/ID.AM-07

ID.AM-08

Systems, hardware, software, services, and data are managed throughout their life cycles

arcate:compliance:requirements/nist-csf/2.0/ID.AM-08