NIST SP 1800-32
NIST SP 1800-32: Asset Identification & Governance

NIST SP 1800-32 NIST1800-32-02: System security categorization

System security categorization. Control from NIST SP 1800-32 framework, domain: NIST SP 1800-32: Asset Identification & Governance.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

What else in your programme already covers this

This control maps to 41 controls across 29 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.

  • CFR211-G-122 Section 211.122 - Materials Examination and Usage Criteria
  • CFR211-G-125 Section 211.125 - Labeling Issuance
  • CFR211-G-130 Section 211.130 - Packaging and Labeling Operations

API 1164 · 1 control

  • API1164-02 Risk Management Framework

BSI IT-Grundschutz · 1 control

  • BSI-15 Security categorization
  • QMSR-820.45 Device labelling and packaging controls (§820.45)
  • 60601-1.7.1 Equipment identification and marking

IEC 62443 · 1 control

  • IEC62443-02 System security categorization
  • ISO-14064-1-5.4 Categorization of indirect GHG emissions

ISO/IEC 27010:2015 · 1 control

  • 27010-8.2 Membership Termination

ISO/IEC 27019:2024 · 1 control

  • ISO27019-02 System security categorization

ISO/IEC 27043:2015 · 1 control

  • ISO27043-08 Information classification and labeling

ISO/SAE 21434 · 1 control

  • ISO21434-08 Information classification and labeling

NIST SP 800-190 · 1 control

  • NISTSP61-4 Detection and Analysis: Sources, Triage, Categorisation, Prioritisation

NIST SP 800-63-4 · 1 control

  • NISTSP63R4-7 Privacy, Records Retention, and User-Controlled Wallets

NIST SP 800-88 · 1 control

  • NISTSP88-1 Media Sanitization Policy, Roles, and Decision Framework

NIST SP 800-92 · 1 control

  • NISTSP92-7 Privacy in Logs, Sensitive Content Handling, Cloud and SaaS Log Considerations
  • QRCM-1.3 Data Classification for Migration

OECD AI Principles · 1 control

  • OECDAI-3 Robustness, Security, Safety, and Adversarial Attack Protection

OWASP SAMM · 1 control

  • OWASPSAMM-2 Design: Threat Assessment, Security Requirements, Security Architecture
  • OMANCS-4 Data Protection, Cryptography, and Privacy Alignment

OpenSSF Scorecard · 1 control

  • OSSFSC-2 Dependency Management, Pinning, Updates, Vulnerability Tracking
  • PASONE-1 Security Triage Process, Asset Sensitivity Classification, and Threat Assessment

PTES · 1 control

  • PTESPHASE-1 Pre-Engagement Interactions and Scoping

SASB Standards · 1 control

  • SASB-SOC-7 Selling Practices and Product Labeling
  • SHAREASSESS-2 Access Control, Identity, Authentication

SLSA · 1 control

  • SUPCHAIN-1 Build Integrity - Source, Build, Provenance
  • UKAI-1 Risk-Based Approach and Pro-Innovation Principles

Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.

Other controls in NIST SP 1800-32: Asset Identification & Governance

Query this from an agent

The graph holds this control, the 41 it maps to, and the evidence behind each claim, over MCP and REST.