NIST

NIST Cybersecurity Framework (CSF) 2.0

2.0

Publié par NIST
Version 2.0
Date de publication 2024-02-26
Langue en
Exigences 225
Document source csf.xlsx
Clé de plateforme arcate:compliance:frameworks/nist-csf/2.0

Exigences

PR.MA-01

[Withdrawn: Incorporated into ID.AM-08, PR.PS-03]

arcate:compliance:requirements/nist-csf/2.0/PR.MA-01 · row 149 of sheet 'CSF 2.0'

PR.MA-02

[Withdrawn: Incorporated into ID.AM-08, PR.PS-02]

arcate:compliance:requirements/nist-csf/2.0/PR.MA-02 · row 150 of sheet 'CSF 2.0'

PR.PT — Protective Technology

[Withdrawn: Incorporated into other Protect Categories]

arcate:compliance:requirements/nist-csf/2.0/PR.PT · row 151 of sheet 'CSF 2.0'

PR.PT-01

[Withdrawn: Incorporated into PR.PS-04]

arcate:compliance:requirements/nist-csf/2.0/PR.PT-01 · row 152 of sheet 'CSF 2.0'

PR.PT-02

[Withdrawn: Incorporated into PR.DS-01, PR.PS-01]

arcate:compliance:requirements/nist-csf/2.0/PR.PT-02 · row 153 of sheet 'CSF 2.0'

PR.PT-03

[Withdrawn: Incorporated into PR.PS-01]

arcate:compliance:requirements/nist-csf/2.0/PR.PT-03 · row 154 of sheet 'CSF 2.0'

PR.PT-04

[Withdrawn: Incorporated into PR.AA-06, PR.IR-01]

arcate:compliance:requirements/nist-csf/2.0/PR.PT-04 · row 155 of sheet 'CSF 2.0'

PR.PT-05

[Withdrawn: Moved to PR.IR-03]

arcate:compliance:requirements/nist-csf/2.0/PR.PT-05 · row 156 of sheet 'CSF 2.0'

DE — DETECT

Possible cybersecurity attacks and compromises are found and analyzed

arcate:compliance:requirements/nist-csf/2.0/DE · row 158 of sheet 'CSF 2.0'

DE.CM — Continuous Monitoring

Assets are monitored to find anomalies, indicators of compromise, and other potentially adverse events

arcate:compliance:requirements/nist-csf/2.0/DE.CM · row 159 of sheet 'CSF 2.0'

DE.CM-01

Networks and network services are monitored to find potentially adverse events

arcate:compliance:requirements/nist-csf/2.0/DE.CM-01 · row 160 of sheet 'CSF 2.0'

DE.CM-02

The physical environment is monitored to find potentially adverse events

arcate:compliance:requirements/nist-csf/2.0/DE.CM-02 · row 161 of sheet 'CSF 2.0'

DE.CM-03

Personnel activity and technology usage are monitored to find potentially adverse events

arcate:compliance:requirements/nist-csf/2.0/DE.CM-03 · row 162 of sheet 'CSF 2.0'

DE.CM-04

[Withdrawn: Incorporated into DE.CM-01, DE.CM-09]

arcate:compliance:requirements/nist-csf/2.0/DE.CM-04 · row 163 of sheet 'CSF 2.0'

DE.CM-05

[Withdrawn: Incorporated into DE.CM-01, DE.CM-09]

arcate:compliance:requirements/nist-csf/2.0/DE.CM-05 · row 164 of sheet 'CSF 2.0'

DE.CM-06

External service provider activities and services are monitored to find potentially adverse events

arcate:compliance:requirements/nist-csf/2.0/DE.CM-06 · row 165 of sheet 'CSF 2.0'

DE.CM-07

[Withdrawn: Incorporated into DE.CM-01, DE.CM-03, DE.CM-06, DE.CM-09]

arcate:compliance:requirements/nist-csf/2.0/DE.CM-07 · row 166 of sheet 'CSF 2.0'

DE.CM-08

[Withdrawn: Incorporated into ID.RA-01]

arcate:compliance:requirements/nist-csf/2.0/DE.CM-08 · row 167 of sheet 'CSF 2.0'

DE.CM-09

Computing hardware and software, runtime environments, and their data are monitored to find potentially adverse events

arcate:compliance:requirements/nist-csf/2.0/DE.CM-09 · row 168 of sheet 'CSF 2.0'

DE.AE — Adverse Event Analysis

Anomalies, indicators of compromise, and other potentially adverse events are analyzed to characterize the events and detect cybersecurity incidents

arcate:compliance:requirements/nist-csf/2.0/DE.AE · row 169 of sheet 'CSF 2.0'

DE.AE-01

[Withdrawn: Incorporated into ID.AM-03]

arcate:compliance:requirements/nist-csf/2.0/DE.AE-01 · row 170 of sheet 'CSF 2.0'

DE.AE-02

Potentially adverse events are analyzed to better understand associated activities

arcate:compliance:requirements/nist-csf/2.0/DE.AE-02 · row 171 of sheet 'CSF 2.0'

DE.AE-03

Information is correlated from multiple sources

arcate:compliance:requirements/nist-csf/2.0/DE.AE-03 · row 172 of sheet 'CSF 2.0'

DE.AE-04

The estimated impact and scope of adverse events are understood

arcate:compliance:requirements/nist-csf/2.0/DE.AE-04 · row 173 of sheet 'CSF 2.0'