Skip to main content

πŸ’Ό SC-5 Denial-of-service Protection

Description​

a. [Selection: Protect against; Limit] the effects of the following types of denial-of-service events: [Assignment: organization-defined types of denial-of-service events]; and b. Employ the following controls to achieve the denial-of-service objective: [Assignment: organization-defined controls by type of denial-of-service event].

Similar​

  • Sections
    • /frameworks/aws-fsbp-v1.0.0/guardduty/01
    • /frameworks/aws-fsbp-v1.0.0/sagemaker/04
  • Internal
    • ID: dec-c-e0e71b9f

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό AWS Foundational Security Best Practices v1.0.0 β†’ πŸ’Ό [GuardDuty.1] GuardDuty should be enabled
πŸ’Ό AWS Foundational Security Best Practices v1.0.0 β†’ πŸ’Ό [SageMaker.4] SageMaker AI endpoint production variants should have an initial instance count greater than 1

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό FedRAMP High Security Controls β†’ πŸ’Ό SC-5 Denial-of-service Protection (L)(M)(H)
πŸ’Ό FedRAMP Low Security Controls β†’ πŸ’Ό SC-5 Denial-of-service Protection (L)(M)(H)
πŸ’Ό NIST CSF v2.0 β†’ πŸ’Ό DE.CM-01: Networks and network services are monitored to find potentially adverse events83
πŸ’Ό NIST CSF v2.0 β†’ πŸ’Ό PR.IR-01: Networks and environments are protected from unauthorized logical access and usage40

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό SC-5(1) Denial-of-service Protection _ Restrict Ability to Attack Other Systems
πŸ’Ό SC-5(2) Denial-of-service Protection _ Capacity, Bandwidth, and Redundancy2
πŸ’Ό SC-5(3) Denial-of-service Protection _ Detection and Monitoring