Skip to main content

๐Ÿ’ผ Risk Management Strategy (ID.RM)

  • Contextual name: ๐Ÿ’ผ Risk Management Strategy (ID.RM)
  • ID: /frameworks/nist-csf-v1.1/id-rm
  • Located in: ๐Ÿ’ผ NIST CSF v1.1

Descriptionโ€‹

The organization's priorities, constraints, risk tolerances, and assumptions are established and used to support operational risk decisions.

Similarโ€‹

  • Internal
    • ID: dec-b-9840777b

Sub Sectionsโ€‹

SectionSub SectionsInternal RulesPoliciesFlags
๐Ÿ’ผ ID.RM-1: Risk management processes are established, managed, and agreed to by organizational stakeholders
๐Ÿ’ผ ID.RM-2: Organizational risk tolerance is determined and clearly expressed
๐Ÿ’ผ ID.RM-3: The organization's determination of risk tolerance is informed by its role in critical infrastructure and sector specific risk analysis