NIST 800-53 Rev 5

424 controls available

SI-12(3)privacy

Information Disposal

System and Information Integrity

Control Statement

Use the following techniques to dispose of, destroy, or erase information following the retention period: {{ insert: param, si-12.3_prm_1 }}.

Discussion

Organizations can minimize both security and privacy risks by disposing of information when it is no longer needed. The disposal or destruction of information applies to originals as well as copies and archived records, including system logs that may contain personally identifiable information.

Framework
NIST SP 800-53 Rev 5
Family
System and Information Integrity
Baselines
privacy

Related Frameworks

7 paths across 2 frameworks
SCF2 mappings
DCH-21Information Disposal
0.50
  • Secure Controls Framework · 2026.2 · scf_strm · related
PRI-05Personal Data (PD) Retention & Disposal
0.50
  • Secure Controls Framework · 2026.2 · scf_strm · related
CCI5 mappings
CCI-005008
1.00
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-003671
0.50
  • Secure Controls Framework · 2026.2 · scf_strm · related
  • Secure Controls Framework · 2026.2 · scf_strm · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-003672
0.50
  • Secure Controls Framework · 2026.2 · scf_strm · related
  • Secure Controls Framework · 2026.2 · scf_strm · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-001315
0.25
  • Secure Controls Framework · 2026.2 · scf_strm · related
  • Secure Controls Framework · 2026.2 · scf_strm · related
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-001678
0.25
  • Secure Controls Framework · 2026.2 · scf_strm · related
  • Secure Controls Framework · 2026.2 · scf_strm · related
  • DISA · 2025-01-23 · disa_cci_list · equivalent

Related STIGs

1 STIG reach this control through 7 CCIs. Expand a row to see the responsible NICE and O*NET roles.

Network Device

1 STIG