PR.IR-02
The organization's technology assets are protected from environmental threats
Implementation examples
- Ex1: Protect organizational equipment from known environmental threats, such as flooding, fire, wind, and excessive heat and humidity
- Ex2: Include protection from environmental threats and provisions for adequate operating infrastructure in requirements for service providers that operate systems on the organization's behalf
Mapped NIST 800-53 r5 controls (10)
All informative references (45)
- CCMv4.0: DCS-03
- CCMv4.0: DCS-13
- CCMv4.0: DCS-14
- CCMv4.0: DCS-15
- CRI Profile v2.0: PR.IR-02
- CRI Profile v2.0: PR.IR-02.01
- CSF v1.1: PR.IP-5
- ISO/IEC 27001:2022: Mandatory Clause: None
- ISO/IEC 27001:2022: Annex A Controls: 7.5
- NICE Framework: DD-WRL-001
- NICE Framework: DD-WRL-002
- NICE Framework: DD-WRL-004
- NICE Framework: DD-WRL-006
- NICE Framework: DD-WRL-009
- NICE Framework: IO-WRL-004
- NICE Framework: OG-WRL-014
- PCI DSS: 9.1.1
- PCI DSS: 9.1.2
- PCI DSS: 12.10.1
- SCF: BCD-01
- SCF: PES-01
- SCF: PES-07
- SCF: PES-07.5
- SCF: PES-08
- SCF: PES-09
- SP 800-53 Rev 5.1.1: CP-02
- SP 800-53 Rev 5.1.1: PE-09
- SP 800-53 Rev 5.1.1: PE-10
- SP 800-53 Rev 5.1.1: PE-11
- SP 800-53 Rev 5.1.1: PE-12
- SP 800-53 Rev 5.1.1: PE-13
- SP 800-53 Rev 5.1.1: PE-14
- SP 800-53 Rev 5.1.1: PE-15
- SP 800-53 Rev 5.1.1: PE-18
- SP 800-53 Rev 5.1.1: PE-23
- SP 800-53 Rev 5.2.0: CP-02
- SP 800-53 Rev 5.2.0: PE-09
- SP 800-53 Rev 5.2.0: PE-10
- SP 800-53 Rev 5.2.0: PE-11
- SP 800-53 Rev 5.2.0: PE-12
- SP 800-53 Rev 5.2.0: PE-13
- SP 800-53 Rev 5.2.0: PE-14
- SP 800-53 Rev 5.2.0: PE-15
- SP 800-53 Rev 5.2.0: PE-18
- SP 800-53 Rev 5.2.0: PE-23
Source: NIST Cybersecurity Framework 2.0 · CSF 2.0 → 800-53 mappings sourced from NIST Cybersecurity & Privacy Reference Tool (CPRT) · US government work — attribution requested per NIST Open License Terms. Direct CSF→CWE/CVE cross-references will be added in a Phase B LLM-authored mapping pass (not yet rendered).