All frameworks
nist-80053-rev5version Rev. 5

NIST SP 800-53 Rev. 5

Official source

1,196 controls.

ReferenceFamilyTitle
PE-3(5)Physical and Environmental ProtectionTamper Protection
PE-3(6)Physical and Environmental ProtectionFacility Penetration Testing
PE-3(7)Physical and Environmental ProtectionPhysical Barriers
PE-3(8)Physical and Environmental ProtectionAccess Control Vestibules
PE-4Physical and Environmental ProtectionAccess Control for Transmission
PE-5Physical and Environmental ProtectionAccess Control for Output Devices
PE-5(1)Physical and Environmental ProtectionAccess to Output by Authorized Individuals
PE-5(2)Physical and Environmental ProtectionLink to Individual Identity
PE-5(3)Physical and Environmental ProtectionMarking Output Devices
PE-6Physical and Environmental ProtectionMonitoring Physical Access
PE-6(1)Physical and Environmental ProtectionIntrusion Alarms and Surveillance Equipment
PE-6(2)Physical and Environmental ProtectionAutomated Intrusion Recognition and Responses
PE-6(3)Physical and Environmental ProtectionVideo Surveillance
PE-6(4)Physical and Environmental ProtectionMonitoring Physical Access to Systems
PE-7Physical and Environmental ProtectionVisitor Control
PE-8Physical and Environmental ProtectionVisitor Access Records
PE-8(1)Physical and Environmental ProtectionAutomated Records Maintenance and Review
PE-8(2)Physical and Environmental ProtectionPhysical Access Records
PE-8(3)Physical and Environmental ProtectionLimit Personally Identifiable Information Elements
PE-9Physical and Environmental ProtectionPower Equipment and Cabling
PE-9(1)Physical and Environmental ProtectionRedundant Cabling
PE-9(2)Physical and Environmental ProtectionAutomatic Voltage Controls
PL-1PlanningPolicy and Procedures
PL-10PlanningBaseline Selection
PL-11PlanningBaseline Tailoring
PL-2PlanningSystem Security and Privacy Plans
PL-2(1)PlanningConcept of Operations
PL-2(2)PlanningFunctional Architecture
PL-2(3)PlanningPlan and Coordinate with Other Organizational Entities
PL-3PlanningSystem Security Plan Update
PL-4PlanningRules of Behavior
PL-4(1)PlanningSocial Media and External Site/Application Usage Restrictions
PL-5PlanningPrivacy Impact Assessment
PL-6PlanningSecurity-related Activity Planning
PL-7PlanningConcept of Operations
PL-8PlanningSecurity and Privacy Architectures
PL-8(1)PlanningDefense in Depth
PL-8(2)PlanningSupplier Diversity
PL-9PlanningCentral Management
PM-1Program ManagementInformation Security Program Plan
PM-10Program ManagementAuthorization Process
PM-11Program ManagementMission and Business Process Definition
PM-12Program ManagementInsider Threat Program
PM-13Program ManagementSecurity and Privacy Workforce
PM-14Program ManagementTesting, Training, and Monitoring
PM-15Program ManagementSecurity and Privacy Groups and Associations
PM-16Program ManagementThreat Awareness Program
PM-16(1)Program ManagementAutomated Means for Sharing Threat Intelligence
PM-17Program ManagementProtecting Controlled Unclassified Information on External Systems
PM-18Program ManagementPrivacy Program Plan

Built 2026-07-25 from 216 techniques, 334 regulation articles, 125 ENISA controls, 2,610 framework controls, and 90 countermeasures.