NIST 800-53 Rev 5
424 controls available
IR-8(1)privacy
Breaches
Incident Response
Control Statement
Include the following in the Incident Response Plan for breaches involving personally identifiable information:
Discussion
Organizations may be required by law, regulation, or policy to follow specific procedures relating to breaches, including notice to individuals, affected organizations, and oversight bodies; standards of harm; and mitigation or other specific requirements.
- Framework
- NIST SP 800-53 Rev 5
- Family
- Incident Response
- Baselines
- privacy
Related Frameworks
4 paths across 2 frameworks
Related Frameworks
SCF1 mapping
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
CCI3 mappings
CCI-004160
1.00
- DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-004161
1.00
- DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-004162
1.00
- DISA · 2025-01-23 · disa_cci_list · equivalent
Related STIGs
No STIGs in the current catalog reference any CCI mapped to this control.