NIST 800-53 Rev 5

424 controls available

IR-8(1)privacy

Breaches

Incident Response

Control Statement

Include the following in the Incident Response Plan for breaches involving personally identifiable information:

Discussion

Organizations may be required by law, regulation, or policy to follow specific procedures relating to breaches, including notice to individuals, affected organizations, and oversight bodies; standards of harm; and mitigation or other specific requirements.

Framework
NIST SP 800-53 Rev 5
Family
Incident Response
Baselines
privacy

Related Frameworks

4 paths across 2 frameworks
SCF1 mapping
IRO-04.1Data Breach
1.00
  • Secure Controls Framework · 2026.2 · scf_strm · equivalent
CCI3 mappings
CCI-004160
1.00
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-004161
1.00
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-004162
1.00
  • DISA · 2025-01-23 · disa_cci_list · equivalent

Related STIGs

No STIGs in the current catalog reference any CCI mapped to this control.