Skip to main content

💼 GV.RR-03: Adequate resources are allocated commensurate with the cybersecurity risk strategy, roles, responsibilities, and policies

  • ID: /frameworks/nist-csf-v2.0/gv-rr/03

Description​

  1. Conduct periodic management reviews to ensure that those given cybersecurity risk management responsibilities have the necessary authority
  2. Identify resource allocation and investment in line with risk tolerance and response
  3. Provide adequate and sufficient people, process, and technical resources to support

sections:

  • "/frameworks/nist-csf-v1.1/id-rm/01"
  • "/frameworks/nist-sp-800-53-r5/pm/03"

Similar​

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance