NIST SP 1800-32
NIST SP 1800-32: Systems Security

NIST SP 1800-32 NIST1800-32-11: Security patch management for OT

Security patch management for OT. Control from NIST SP 1800-32 framework, domain: NIST SP 1800-32: Systems Security.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

What else in your programme already covers this

This control maps to 20 controls across 13 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.

  • CPSC-STD.2 UL 5500 Remote Update Compliance
  • CPSC-SW.2 Software Update Safety Verification
  • CPSC-SW.3 Remote Update Security

ISO/IEC 30111:2019 · 2 controls

  • 30111-6.5 Remediation Strategy Selection
  • 30111-7.3 Quality assurance of remediation

API 1164 · 1 control

  • API1164-11 Logging and Monitoring
  • CPG-5.A Vulnerability Disclosure Program
  • CAT-D3-3 Corrective controls

IEC 62443 · 1 control

  • IEC62443-11 Security patch management for OT

ISO/IEC 27019:2024 · 1 control

  • ISO27019-11 Security patch management for OT

ISO/IEC 27400:2022 · 1 control

  • 27400-6.3 Secure Update Mechanism
  • NISTSP82-5 OT Configuration Management, Patching, Vulnerability Management, and Malware Protection
  • NZISM-5 Network Security, System Hardening, and Application Security
  • PICERL-E1 Threat Removal

South Korea ISMS-P · 1 control

  • ISMSP-SYS-01 System Hardening and Patch Management

Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.

Other controls in NIST SP 1800-32: Systems Security

Query this from an agent

The graph holds this control, the 20 it maps to, and the evidence behind each claim, over MCP and REST.