Skip to main content

💼 PR.IR-03: Mechanisms are implemented to achieve resilience requirements in normal and adverse situations

  • ID: /frameworks/nist-csf-v2.0/pr-ir/03

Description

  1. Avoid single points of failure in systems and infrastructure
  2. Use load balancing to increase capacity and improve reliability
  3. Use high-availability components like redundant storage and power supplies to improve system reliability

Similar

  • Sections
    • /frameworks/nist-csf-v1.1/pr-pt/05
    • /frameworks/nist-sp-800-53-r5/sa/08
    • /frameworks/nist-sp-800-53-r5/sc/06
    • /frameworks/nist-sp-800-53-r5/sc/24
    • /frameworks/nist-sp-800-53-r5/sc/36
    • /frameworks/nist-sp-800-53-r5/sc/39
    • /frameworks/nist-sp-800-53-r5/si/13

Similar Sections (Take Policies From)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 NIST CSF v1.1 → 💼 PR.PT-5: Mechanisms (e.g., failsafe, load balancing, hot swap) are implemented to achieve resilience requirements in normal and adverse situations33no data
💼 NIST SP 800-53 Revision 5 → 💼 SA-8 Security and Privacy Engineering Principles338no data
💼 NIST SP 800-53 Revision 5 → 💼 SC-6 Resource Availabilityno data
💼 NIST SP 800-53 Revision 5 → 💼 SC-24 Fail in Known Stateno data
💼 NIST SP 800-53 Revision 5 → 💼 SC-36 Distributed Processing and Storage26no data
💼 NIST SP 800-53 Revision 5 → 💼 SC-39 Process Isolation2no data
💼 NIST SP 800-53 Revision 5 → 💼 SI-13 Predictable Failure Prevention511no data

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance

Policies (15)

PolicyLogic CountFlagsCompliance
🛡️ AWS DynamoDB Provisioned Table Auto Scaling is not configured🟢1🟢 x6no data
🛡️ AWS EC2 Auto Scaling Group does not span multiple Availability Zones🟢1🟢 x6no data
🛡️ AWS ELB Load Balancer Cross-Zone Load Balancing is not enabled🟢1🟢 x6no data
🛡️ AWS ELB Load Balancer is not registered to multiple Availability Zones🟢1🟢 x6no data
🛡️ AWS RDS Instance Multi-AZ Deployment is not enabled🟢1🟢 x6no data
🛡️ AWS S3 Bucket Versioning is not enabled🟢1🟢 x6no data
🛡️ AWS VPC VPN Connection does not have both Tunnels up🟢1🟢 x6no data
🛡️ Azure PostgreSQL Flexible Server connection_throttle.enable Parameter is not set to ON🟢1🟢 x6no data
🛡️ Azure Storage Blob Containers Soft Delete is not enabled🟢1🟢 x6no data
🛡️ Google API Key is not restricted for unused APIs🟢1🟢 x6no data
🛡️ Google API Key is not rotated every 90 days🟢1🟢 x6no data
🛡️ Google Cloud SQL Server Instance 3625 (trace flag) Database Flag is not set to on🟢1🟢 x6no data
🛡️ Google Cloud SQL Server Instance user connections Database Flag is set to a limiting (other than 0) value🟢1🟢 x6no data
🛡️ Google Cloud SQL Server Instance user options Database Flag is configured🟢1🟢 x6no data
🛡️ Google Project has API Keys🟢1🟠 x1, 🟢 x5no data