PR.IR — Technology Infrastructure Resilience
Security architectures are managed with the organization's risk strategy to protect asset confidentiality, integrity, and availability, and organizational resilience
PR.IR-01
Networks and environments are protected from unauthorized logical access and usage
PR.IR-02
The organization's technology assets are protected from environmental threats
PR.IR-03
Mechanisms are implemented to achieve resilience requirements in normal and adverse situations
PR.IR-04
Adequate resource capacity to ensure availability is maintained
Source: NIST Cybersecurity Framework 2.0 · CSF 2.0 → 800-53 mappings sourced from NIST Cybersecurity & Privacy Reference Tool (CPRT) · US government work — attribution requested per NIST Open License Terms. Direct CSF→CWE/CVE cross-references will be added in a Phase B LLM-authored mapping pass (not yet rendered).