Security Plan
What is Security Plan?
A formal document that provides an overview of the security requirements for an information system and describes the controls in place.
Terms that appear alongside security plan
Each of these is named in at least one of the same controls as security plan. The number is how many controls name both.
- facility security 7 shared controls
- nist 5 shared controls
- physical security 4 shared controls
- access control 4 shared controls
- audit 4 shared controls
- risk assessment 4 shared controls
- authentication 3 shared controls
- policy 3 shared controls
Frameworks that govern security plan
What the standards actually require on security plan
Requirements naming security plan across 6 standards, quoted from the control text.
Conduct an annual audit of the Facility Security Plan and supporting security operations, including cyber controls, with documented scope, methodology, findings, and corrective action plans submitted to facility leadership and the FSO.
MTSA-Audit · Annual Audit of the Security Plan →Systems have a system security plan that includes an overview of the system (covering the system's purpose, the system boundary and how the system is managed) as well as an annex that covers applicable controls from this document and any additional controls th...
ISM-0041 · Systems have a system security plan that includes an overview of the system (covering the →ITU-T Recommendation X.805 (10/2003) Security architecture for systems providing end-to-end communications is a foundational network security architecture standard published by the International Telecommunication Union Telecommunication Standardization Sector...
X805-Scope-Architecture-3Layers-3Planes-8Dimensions-5Threats-72Cells-X.800-Series-Heritage · ITU-T X.805 Scope + Security Architecture Overview + 3 Security Layers x 3 Security Planes (9 Modules) x 8 Security Dimensions = 72 Security Perspectives + 5 Threat Categories + X.800-Series Heritage + End-to-End Network Communications →Maintain a written corporate security plan that describes the operator's policies, programmes and procedures for protecting personnel, the public, the environment, the pipeline system, company assets and the continuity of operations.
TSA-PSG-02 · Security plan documentation →Develop, document and periodically update a system security plan describing system boundaries, the operating environment, how each requirement is implemented, and connections to other systems.
CA.L2-3.12.4 · System Security Plan →The entity must have a documented security plan, policies and processes covering governance, personnel, physical, and information/cyber security appropriate to its membership level.
DISP-GOV-PLAN · Security plan, policies and processes →Questions people ask about security plan
What is Security Plan?
Why is Security Plan important for compliance?
Which compliance frameworks address Security Plan?
Where can I learn more about Security Plan?
See how Security Plan applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.