Security and Privacy Controls for Federal Information Systems and Organizations
No. | Control | Priority | Low | Moderate | High |
---|---|---|---|---|---|
IR-1 | INCIDENT RESPONSE POLICY AND PROCEDURES | P1 |
IR-1
|
IR-1
|
IR-1
|
IR-2 | INCIDENT RESPONSE TRAINING | P2 |
IR-2
|
IR-2
|
|
IR-3 | INCIDENT RESPONSE TESTING | P2 |
|
IR-3
(2)
|
IR-3
(2)
|
IR-4 | INCIDENT HANDLING | P1 |
IR-4
|
IR-4
(1)
|
|
IR-5 | INCIDENT MONITORING | P1 |
IR-5
|
IR-5
|
IR-5
(1)
|
IR-6 | INCIDENT REPORTING | P1 |
IR-6
|
IR-6
(1)
|
IR-6
(1)
|
IR-7 | INCIDENT RESPONSE ASSISTANCE | P2 |
IR-7
|
IR-7
(1)
|
IR-7
(1)
|
IR-8 | INCIDENT RESPONSE PLAN | P1 |
IR-8
|
IR-8
|
IR-8
|
IR-9 | INFORMATION SPILLAGE RESPONSE | P0 |
|
|
|
IR-10 | INTEGRATED INFORMATION SECURITY ANALYSIS TEAM | P0 |
|
|
|