Skip to main content

๐Ÿ’ผ GV.RR-03: Adequate resources are allocated commensurate with the cybersecurity risk strategy, roles, responsibilities, and policies

  • Contextual name: ๐Ÿ’ผ GV.RR-03: Adequate resources are allocated commensurate with the cybersecurity risk strategy, roles, responsibilities, and policies
  • ID: /frameworks/nist-csf-v2.0/gv-rr/03
  • Located in: ๐Ÿ’ผ Roles, Responsibilities, and Authorities (GV.RR)

Descriptionโ€‹

  1. Conduct periodic management reviews to ensure that those given cybersecurity risk management responsibilities have the necessary authority
  2. Identify resource allocation and investment in line with risk tolerance and response
  3. Provide adequate and sufficient people, process, and technical resources to support

sections:

  • "/frameworks/nist-csf-v1.1/id-rm/01"
  • "/frameworks/nist-sp-800-53-r5/pm/03"

Similarโ€‹

Sub Sectionsโ€‹

SectionSub SectionsInternal RulesPoliciesFlags