unified
UC-ASSET-03 — Classify, prioritize, and label information and assets
Classify information and associated assets under a documented scheme based on sensitivity, criticality, and business impact, and prioritize assets and protections accordingly. Apply labels and markings, including on physical media, that identify the classification and any distribution or handling limitations. Identify confidential information at creation or receipt and keep classifications and priorities current through periodic review.
Record JSON · Open in map · Data retrieval guide
Catalog revision: 24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028. A connection does not establish full coverage.
Attributes
- domain
- Asset Management & Inventory
- type
- preventive
- category
- administrative
Details
- unified_id
- UC-ASSET-03
- title
- Classify, prioritize, and label information and assets
- statement
- Classify information and associated assets under a documented scheme based on sensitivity, criticality, and business impact, and prioritize assets and protections accordingly. Apply labels and markings, including on physical media, that identify the classification and any distribution or handling limitations. Identify confidential information at creation or receipt and keep classifications and priorities current through periodic review.
- domain
- Asset Management & Inventory
- control_type
- preventive
- control_category
- administrative
- members
- framework
- nist-800-53
- control_id
- MP-3
- coverage
- full
- relationship
- superset_of
- framework
- nist-csf-2
- control_id
- ID.AM-05
- coverage
- full
- relationship
- superset_of
- framework
- iso-27001
- control_id
- A.5.12
- coverage
- full
- relationship
- superset_of
- framework
- iso-27001
- control_id
- A.5.13
- coverage
- full
- relationship
- superset_of
- framework
- soc2
- control_id
- C1.1
- coverage
- partial
- delta
- also requires retaining and protecting confidential information per commitments
- relationship
- intersects_with
- guidance
Source
No record-specific source URL is provided.
Connections
- UC-ASSET-03 — Classify, prioritize, and label information and assets maps_to ID.AM-05 — Asset Management: Assets are prioritized based on classification, criticality, resources, and impact on the mission
- framework
- nist-csf-2
- control_id
- ID.AM-05
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- 2.0
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- SOC 2 Confidentiality Assessment tests UC-ASSET-03 — Classify, prioritize, and label information and assets
- UC-ASSET-03 — Classify, prioritize, and label information and assets mitigates Incomplete asset inventory and classification
- strength
- primary
- rationale
- Classifying and labelling information/assets directly remediates the missing classification/labelling this risk names in its title and description.
- UC-ASSET-03 — Classify, prioritize, and label information and assets mitigates Residual data on improperly disposed or re-used media
- strength
- related
- rationale
- Marking media by classification drives correct secure-disposal handling of sensitive media before release.
- UC-ASSET-03 — Classify, prioritize, and label information and assets maps_to A.5.13 — Labelling of information
- framework
- iso-27001
- control_id
- A.5.13
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- 2022
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- UC-ASSET-03 — Classify, prioritize, and label information and assets maps_to A.5.12 — Classification of information
- framework
- iso-27001
- control_id
- A.5.12
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- 2022
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- UC-ASSET-03 — Classify, prioritize, and label information and assets mitigates Intellectual property loss or infringement
- strength
- related
- rationale
- Identifying and labelling proprietary/confidential info enforces handling restrictions that reduce trade-secret loss.
- UC-ASSET-03 — Classify, prioritize, and label information and assets maps_to MP-3 — Media Marking
- framework
- nist-800-53
- control_id
- MP-3
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- Rev. 5
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- ISO 27001 SoA Review & Controls Assessment oversees UC-ASSET-03 — Classify, prioritize, and label information and assets
- UC-ASSET-03 — Classify, prioritize, and label information and assets mitigates Theft of equipment, media or unattended devices
- strength
- related
- rationale
- Prioritizing protection by criticality directs stronger physical safeguards to high-value assets, reducing theft impact.
- ISO 27001 Stage 2 Annex A Controls Audit tests UC-ASSET-03 — Classify, prioritize, and label information and assets
- UC-ASSET-03 — Classify, prioritize, and label information and assets maps_to C1.1 — The entity identifies and maintains confidential information to meet the entity's objectives related to confidentiality.
- framework
- soc2
- control_id
- C1.1
- coverage
- partial
- delta
- also requires retaining and protecting confidential information per commitments
- relationship
- intersects_with
- source_version
- 2017 TSC
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- IT Asset Inventory & Classification Upkeep operates UC-ASSET-03 — Classify, prioritize, and label information and assets