unified
UC-ASSET-11 — Improve security plans and processes from operational lessons
Identify improvements from the execution of operational processes, procedures, and activities, and track them to implementation. Establish, communicate, maintain, and improve incident response and other cybersecurity plans that affect operations, updating them after exercises, incidents, and significant organizational or technical change.
Record JSON · Open in map · Data retrieval guide
Catalog revision: 24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028. A connection does not establish full coverage.
Attributes
- domain
- Incident Management & Response
- type
- corrective
- category
- administrative
Details
- unified_id
- UC-ASSET-11
- title
- Improve security plans and processes from operational lessons
- statement
- Identify improvements from the execution of operational processes, procedures, and activities, and track them to implementation. Establish, communicate, maintain, and improve incident response and other cybersecurity plans that affect operations, updating them after exercises, incidents, and significant organizational or technical change.
- domain
- Incident Management & Response
- control_type
- corrective
- control_category
- administrative
- members
- framework
- nist-csf-2
- control_id
- ID.IM-03
- coverage
- full
- relationship
- superset_of
- framework
- nist-csf-2
- control_id
- ID.IM-04
- coverage
- full
- relationship
- superset_of
- guidance
Source
No record-specific source URL is provided.
Connections
- Incident Management Lifecycle operates UC-ASSET-11 — Improve security plans and processes from operational lessons
- Cybersecurity Incident Response operates UC-ASSET-11 — Improve security plans and processes from operational lessons
- UC-ASSET-11 — Improve security plans and processes from operational lessons maps_to ID.IM-04 — Improvement: Incident response plans and other cybersecurity plans that affect operations are established, communicated, maintained, and improved
- framework
- nist-csf-2
- control_id
- ID.IM-04
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- 2.0
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- Business Continuity & DR Test Exercise operates UC-ASSET-11 — Improve security plans and processes from operational lessons
- UC-ASSET-11 — Improve security plans and processes from operational lessons mitigates No or insufficient incident-response procedures
- strength
- related
- rationale
- Improving IR/cyber plans after exercises and incidents is a second-order feedback loop presupposing the base procedures UC-IR-01/02 establish and test; it contributes but is not the operative defense against their absence.
- UC-ASSET-11 — Improve security plans and processes from operational lessons maps_to ID.IM-03 — Improvement: Improvements are identified from execution of operational processes, procedures, and activities
- framework
- nist-csf-2
- control_id
- ID.IM-03
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- 2.0
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.