SA-24
System and Services Acquisition
Design For Cyber Resiliency
Description
a. Design organizational systems, system components, or system services to achieve cyber resiliency by: b. Implement the selected cyber resiliency goals, objectives, techniques, implementation approaches, and design principles as part of an organizational risk management process or systems security engineering process.
Mapped SPARTA techniques
No techniques mapped to this control.
Cross-framework references
Relationships published by the source frameworks themselves, reproduced here with attribution. They are not SafeMode Space mappings and carry no confidence rating of ours.
Referenced by 3 in NIST Cybersecurity Framework 2.0
- GV.RM-03Cybersecurity risk management activities and outcomes are included in enterprise risk management processes
- PR.IR-03Mechanisms are implemented to achieve resilience requirements in normal and adverse situations
- PR.PS-06Secure software development practices are integrated, and their performance is monitored throughout the software development life cycle
Cite as SafeMode Space, nist-80053-rev5 SA-24.