Skip to main content

πŸ’Ό PR.IR-03: Mechanisms are implemented to achieve resilience requirements in normal and adverse situations

  • Contextual name: πŸ’Ό PR.IR-03: Mechanisms are implemented to achieve resilience requirements in normal and adverse situations
  • ID: /frameworks/nist-csf-v2.0/pr-ir/03
  • Located in: πŸ’Ό Technology Infrastructure Resilience (PR.IR)

Description​

  1. Avoid single points of failure in systems and infrastructure
  2. Use load balancing to increase capacity and improve reliability
  3. Use high-availability components like redundant storage and power supplies to improve system reliability

Similar​

  • Sections
    • /frameworks/nist-csf-v1.1/pr-pt/05
    • /frameworks/nist-sp-800-53-r5/sa/08
    • /frameworks/nist-sp-800-53-r5/sc/06
    • /frameworks/nist-sp-800-53-r5/sc/24
    • /frameworks/nist-sp-800-53-r5/sc/36
    • /frameworks/nist-sp-800-53-r5/sc/39
    • /frameworks/nist-sp-800-53-r5/si/13

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό NIST CSF v1.1 β†’ πŸ’Ό PR.PT-5: Mechanisms (e.g., failsafe, load balancing, hot swap) are implemented to achieve resilience requirements in normal and adverse situations33
πŸ’Ό NIST SP 800-53 Revision 5 β†’ πŸ’Ό SA-8 Security and Privacy Engineering Principles337
πŸ’Ό NIST SP 800-53 Revision 5 β†’ πŸ’Ό SC-6 Resource Availability
πŸ’Ό NIST SP 800-53 Revision 5 β†’ πŸ’Ό SC-24 Fail in Known State
πŸ’Ό NIST SP 800-53 Revision 5 β†’ πŸ’Ό SC-36 Distributed Processing and Storage22
πŸ’Ό NIST SP 800-53 Revision 5 β†’ πŸ’Ό SC-39 Process Isolation2
πŸ’Ό NIST SP 800-53 Revision 5 β†’ πŸ’Ό SI-13 Predictable Failure Prevention54

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags

Policies (11)​

PolicyLogic CountFlags
πŸ“ AWS DynamoDB Provisioned Table Auto Scaling is not configured 🟒1🟒 x6
πŸ“ AWS RDS Instance Multi-AZ Deployment is not enabled 🟒1🟒 x6
πŸ“ AWS S3 Bucket Versioning is not enabled 🟒1🟒 x6
πŸ“ Azure PostgreSQL Flexible Server connection_throttle.enable Parameter is not set to ON 🟒1🟒 x6
πŸ“ Azure Storage Blob Containers Soft Delete is not enabled 🟒1🟒 x6
πŸ“ Google API Key is not restricted for unused APIs 🟒1🟒 x6
πŸ“ Google API Key is not rotated every 90 days 🟒1🟒 x6
πŸ“ Google Cloud SQL Server Instance 3625 (trace flag) Database Flag is not set to on 🟒1🟒 x6
πŸ“ Google Cloud SQL Server Instance user connections Database Flag is set to a limiting (other than 0) value 🟒1🟒 x6
πŸ“ Google Cloud SQL Server Instance user options Database Flag is configured 🟒1🟒 x6
πŸ“ Google Project has API Keys 🟒1🟠 x1, 🟒 x5