Law / Frameworks / NIST CSF 2.0 / Respond
NIST CSF 2.0, RespondRS.AN-06
Actions performed during an investigation are recorded, and the records' integrity and provenance are preservedNIST Cybersecurity Framework, version 2.0, February 2024 (NIST CSWP 29), RS.AN-06
We read each law below as bearing on this control. That does not mean the control, done well, meets the law: what each law asks is on its own page. Corpus as of .
- 1
- law
- 1
- place
- 0
- with court rulings behind them
- 0
- not yet in force
The same ground elsewhere linked through the kinds of duty both controls are mapped from
- NIST AI RMFGOVERN 4.3 Organizational practices are in place to enable AI testing, identification of...
- NIST AI RMFMANAGE 4.1 Post-deployment AI system monitoring plans are implemented, including mechanisms for...
- NIST AI 600-1GAI-RISK-04 Data Privacy
- NIST AI 600-1GAI-RISK-09 Information Security
- MIT mitigations3.6 Incident Response & Recovery
- MIT mitigations4.3 Incident Reporting
- NIST Privacy FrameworkCM.AW-P7 Impacted individuals and organizations are notified about a privacy breach or event.
- NIST Privacy FrameworkCM.AW-P8 Individuals are provided with mitigation mechanisms (e.g., credit monitoring, consent...
Security baseline statutes
1 law, 1 place| Place | Law | What it asks, as read here |
|---|---|---|
| Data Classification Policy |
Form a data classification team including your information security and information technology leads, and direct employees to report immediately any breach of this classification scheme, recording it with the corrective action taken. |
Full text of the NIST Cybersecurity Framework, public domain (a US government work). Every control of the framework.