NIST Cybersecurity Framework 2.0
RS - Respond

NIST Cybersecurity Framework 2.0 NIST-CSF-RS.MA-04: Incidents are escalated or elevated as needed

Incidents are escalated or elevated as needed. Control from NIST Cybersecurity Framework 2.0 framework, domain: RS - Respond.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

What else in your programme already covers this

This control maps to 37 controls across 28 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.

ISO 27001:2022 · 3 controls

  • 5.24 Information security incident management planning and preparation 
  • 5.25 Assessment and decision on information security events
  • 5.26 Response to information security incidents

NIST SP 800-53 Rev 5 · 3 controls

  • ISM-0123 Reporting incidents to the CISO
  • ISM-0733 CISO awareness of all incidents
  • RS.AN-2 RS.AN-2: The impact of the incident is understood
  • RS.CO-4 RS.CO-4: Coordination with stakeholders occurs consistent with response plans
  • RS.AN-2 RS.AN-2: The impact of the incident is understood
  • RS.CO-4 RS.CO-4: Coordination with stakeholders occurs consistent with response plans

PCI DSS 4.0 · 2 controls

  • 10.4.3 10.4.3 Exceptions and anomalies from log review addressed
  • 10.7.3 10.7.3 Respond promptly to critical security control failures
  • CPS230-27 Identification and Escalation of Incidents and Near Misses

APRA CPS 234 · 1 control

  • CPS234-P25 Response Plan Content and Escalation Mechanisms
  • SEC10-BP01 Identify key personnel and external resources
  • ASBv3-IR-2 Preparation - setup incident notification

C5 (Germany) · 1 control

  • C5-SIM-01 Policy for security incident management
  • CFTC-SS-16 Security Incident Response Plan and Testing

CIS Controls v8 · 1 control

  • CIS-17.5 Assign Key Roles and Responsibilities

CMMC 2.0 · 1 control

FedRAMP High · 1 control

  • IR-7 Incident Response Assistance

FedRAMP Moderate · 1 control

  • IR-7 Incident Response Assistance

HIPAA Security Rule · 1 control

ISO 22301:2019 · 1 control

ISO 27002:2022 · 1 control

  • 5.26 Response to information security incidents

ISO 27701:2019 · 1 control

  • 6.13.1 Management of information security incidents and improvements

NIS2 Directive · 1 control

  • 03.06.02 Incident Monitoring, Reporting, and Response Assistance

NIST SP 800-172 · 1 control

  • 3.6.2e Establish and Maintain a Cyber Incident Response Team
  • RS.MA-04 RS.MA-04 Incidents escalated or elevated through tracked status

SOC 2 · 1 control

Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.

Other controls in RS - Respond

You are reading one control. How much of NIST Cybersecurity Framework 2.0 have you already done?

NIST Cybersecurity Framework 2.0 NIST-CSF-RS.MA-04 is one control. If you already hold one of the frameworks below, a reviewed crosswalk already says how much of NIST Cybersecurity Framework 2.0 your existing evidence covers. Hold ISO 27001:2022 and 73 of 106 NIST Cybersecurity Framework 2.0 controls already carry evidence.

Each report names every control your existing framework evidences, every one it does not, the reasoning behind each claim, and the claims that were argued against and rejected. 174 were rejected on the ISO 27001:2022 pair alone.

Query this from an agent

The graph holds this control, the 37 it maps to, and the evidence behind each claim, over MCP and REST.