Law / Frameworks / NIST CSF 2.0 / Protect
NIST CSF 2.0, ProtectPR.AT-01
Personnel are provided with awareness and training so that they possess the knowledge and skills to perform general tasks with cybersecurity risks in mindNIST Cybersecurity Framework, version 2.0, February 2024 (NIST CSWP 29), PR.AT-01
We read each law below as bearing on this control. That does not mean the control, done well, meets the law: what each law asks is on its own page. Corpus as of .
- 2
- laws
- 2
- places
- 0
- with court rulings behind them
- 0
- not yet in force
Sector security regimes
1 law, 1 place| Place | Law | What it asks, as read here |
|---|---|---|
| Nacionālās kiberdrošības likums, Cybersecurity Risk-Management Measures |
Draft a cyber-risk-management and ICT-business-continuity plan and give your staff regular training on carrying it out; the plan's required content and the minimum cybersecurity requirements your systems must meet are set by Cabinet Regulation No. 397 of , 'Minimālās kiberdrošības prasības'. |
Security baseline statutes
1 law, 1 place| Place | Law | What it asks, as read here |
|---|---|---|
| Data Security Law, Data Security Protection Obligations |
Establish and maintain a full-process data-security management system covering the collection, storage, use, processing, transmission, provision, and disclosure of the data you process, and provide data-security education and training to your staff. |
Full text of the NIST Cybersecurity Framework, public domain (a US government work). Every control of the framework.