NIEF Ideal Security Controls Profile for Emergency Response Data, v1.0
Ideal profile of security controls from NIST Special Publication 800-53 r4 for systems that handle the Emergency Response information type, as defined by NIST Special Publication 800-60, Volume II, Revision 1, Section D.4.4. Emergency Response involves the immediate actions taken to respond to a disaster (e.g., wildfire management). These actions include providing mobile telecommunications, operational support, power generation, search and rescue, and medical life saving actions. Impacts to emergency response information and the information systems that process and store emergency response information could result in negative impacts on cross-jurisdictional coordination within the critical emergency services infrastructure and the general effectiveness of organizations tasked with emergency response missions. Systems that handle Emergency Response information should operate at an impact level of LOW confidentiality, HIGH integrity, and HIGH availability, as recommended by NIST.
Identifier |
https://trustmark.nief.org/tpat/tips/nief-ideal-security-controls-profile-for-emergency-response-data/1.0/
|
Publication Date |
2021-08-27 |
Issuing Organization |
|
Keywords |
Security,
NIEF,
Emergency Response
|
Legal Notice |
This document and the information contained herein is provided on an "AS IS" basis, and NIEF disclaims all warranties, express or implied, including but not limited to any warranty that the use of the information herein will not infringe any rights or any implied warranties or merchantability or fitness for a particular purpose. In addition, NIEF disclaims legal liability for any loss incurred as a result of the use or reliance on the document or the information contained herein.
|

Loading...
Trust Expression:
TIP_NIEFIdealSetofSecurityControlsforSystemswithaLOWHIGHHIGHRiskProfile
References (1)
TIP
NIEF Ideal Set of Security Controls for Systems with a LOW-HIGH-HIGH Risk Profile, v1.0
|
Description |
Ideal profile of security controls from NIST Special Publication 800-53 r4 for systems that need to operate at a LOW-HIGH-HIGH impact level, as recommended by NIEF. Pertains to systems that operate at LOW confidentiality, HIGH integrity, and HIGH availability. Includes all applicable security controls from NIST SP 800-53 r4, regardless of Priority level. Incorporates security control downgrading guidance, as appropriate, based on recommendations on page 35 of NIST SP 800-53 r4. |
ID |
TIP_NIEFIdealSetofSecurityControlsforSystemswithaLOWHIGHHIGHRiskProfile |
Sources (4)
SP800-53R4 |
NIST Special Publication 800-53 Revision 4, Security and Privacy Controls for Federal Information Systems and Organizations, National Institute of Standards and Technology, April 2013 (Includes updates as of 01-15-2014). Available at http://dx.doi.org/10.6028/NIST.SP.800-53r4. |
NIEF |
National Identity Exchange Federation |
SP800-60V1R1 |
NIST Special Publication 800-60 Volume I, Revision 1, Guide for Mapping Types of Information and Information Systems to Security Categories, National Institute of Standards and Technology, August 2008. Available at https://doi.org/10.6028/NIST.SP.800-60v1r1. |
SP800-60V2R1 |
NIST Special Publication 800-60 Volume II, Revision 1, Appendices to Guide for Mapping Types of Information and Information Systems to Security Categories, National Institute of Standards and Technology, August 2008. Available at https://doi.org/10.6028/NIST.SP.800-60v2r1. |
Terms (1)
Term Name |
Abbreviations |
Definition |
Null Term |
Null
|
Just a spreadsheet test. |
Loading…