{"catalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","kind":"record","record":{"attributes":{"category":"administrative","domain":"Governance, Policy & Oversight","type":"preventive"},"canonicalUrl":"https://controlsmap.com/?v=1&node=uc%3AUC-GOV-23","description":"Establish, document, and maintain contacts and communication channels with relevant authorities (e.g., regulators, supervisory bodies, law enforcement) and with special interest groups, security forums, and professional associations, defining when and by whom each contact is used, including during incidents. Review contact lists at defined intervals to keep them current, and use these channels to stay abreast of recommended practices, emerging threats, and regulatory expectations.","details":{"control_category":"administrative","control_type":"preventive","domain":"Governance, Policy & Oversight","guidance":[],"members":[{"control_id":"A.5.5","coverage":"full","framework":"iso-27001","relationship":"superset_of"},{"control_id":"A.5.6","coverage":"full","framework":"iso-27001","relationship":"superset_of"},{"control_id":"PM-15","coverage":"full","framework":"nist-800-53","relationship":"superset_of"}],"statement":"Establish, document, and maintain contacts and communication channels with relevant authorities (e.g., regulators, supervisory bodies, law enforcement) and with special interest groups, security forums, and professional associations, defining when and by whom each contact is used, including during incidents. Review contact lists at defined intervals to keep them current, and use these channels to stay abreast of recommended practices, emerging threats, and regulatory expectations.","title":"Maintain contacts with authorities and special interest groups","unified_id":"UC-GOV-23"},"id":"uc:UC-GOV-23","mapUrl":"https://controlsmap.com/?v=1&node=uc%3AUC-GOV-23","sourceIds":["iso-27001","nist-800-53"],"sourceUrl":null,"title":"UC-GOV-23 — Maintain contacts with authorities and special interest groups","type":"unified"},"relationships":[{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:2e2abe0fbff9b68c4f91b916bf70c55fe062e56b642512c80dca96c4ae9d18d8","properties":{"rationale":"Maintaining authority contacts and staying abreast of regulatory expectations is a supporting relationship/awareness control, not the operative enforcement-avoidance defense.","strength":"related"},"sourceDetailPath":"/data/v1/records/uc-uc-gov-23-e22e7c62.json","sourceId":"uc:UC-GOV-23","targetDetailPath":"/data/v1/records/risk-compliance-litigation-enforcement-25e7935d.json","targetId":"risk:compliance-litigation-enforcement","type":"mitigates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:5922faba7f699fe0a08f3435b37c17568098452b559ca8c9900b75feb46eaaef","properties":{},"sourceDetailPath":"/data/v1/records/wf-g33-6008159c.json","sourceId":"wf:G33","targetDetailPath":"/data/v1/records/uc-uc-gov-23-e22e7c62.json","targetId":"uc:UC-GOV-23","type":"oversees"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:5c53e3ef5ffe35c02856e1c1802a7402bb5ce33a9851322c24a7c8d1e6c921f8","properties":{"control_id":"A.5.5","coverage":"full","delta":null,"framework":"iso-27001","provenance":{"defaultConfidence":"medium","defaultStatus":"active","direction":"canonical_to_source","mapper":"coworkcanvas-compliance-graph","note":"Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.","reviewDate":"2026-09-07"},"relationship":"superset_of","source_version":"2022"},"sourceDetailPath":"/data/v1/records/uc-uc-gov-23-e22e7c62.json","sourceId":"uc:UC-GOV-23","targetDetailPath":"/data/v1/records/ctrl-iso-27001-a-5-5-bb8f068e.json","targetId":"ctrl:iso-27001:A.5.5","type":"maps_to"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:722eea1a1ab065dd7d746f5a7eb92824852c58225ce56526eb1f17767b3eb932","properties":{"control_id":"A.5.6","coverage":"full","delta":null,"framework":"iso-27001","provenance":{"defaultConfidence":"medium","defaultStatus":"active","direction":"canonical_to_source","mapper":"coworkcanvas-compliance-graph","note":"Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.","reviewDate":"2026-09-07"},"relationship":"superset_of","source_version":"2022"},"sourceDetailPath":"/data/v1/records/uc-uc-gov-23-e22e7c62.json","sourceId":"uc:UC-GOV-23","targetDetailPath":"/data/v1/records/ctrl-iso-27001-a-5-6-dcc736df.json","targetId":"ctrl:iso-27001:A.5.6","type":"maps_to"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:994c2cf009d091c8faa14161771cd6ccb93f14173c88bf6cda80ed21a2123b43","properties":{},"sourceDetailPath":"/data/v1/records/wf-d06-c9616fb8.json","sourceId":"wf:D06","targetDetailPath":"/data/v1/records/uc-uc-gov-23-e22e7c62.json","targetId":"uc:UC-GOV-23","type":"tests"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:c42d5b4356da9cca5f24b15a48ec0ef93e4f7d9c694d7cd2f1b078eb16663f99","properties":{},"sourceDetailPath":"/data/v1/records/wf-c23-d6d82467.json","sourceId":"wf:C23","targetDetailPath":"/data/v1/records/uc-uc-gov-23-e22e7c62.json","targetId":"uc:UC-GOV-23","type":"operates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:ed39ae0cc256833cdc4f8b4e7e12f016f0daf18752ecfc78ec3f7762be132fc3","properties":{"control_id":"PM-15","coverage":"full","delta":null,"framework":"nist-800-53","provenance":{"defaultConfidence":"medium","defaultStatus":"active","direction":"canonical_to_source","mapper":"coworkcanvas-compliance-graph","note":"Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.","reviewDate":"2026-09-07"},"relationship":"superset_of","source_version":"Rev. 5"},"sourceDetailPath":"/data/v1/records/uc-uc-gov-23-e22e7c62.json","sourceId":"uc:UC-GOV-23","targetDetailPath":"/data/v1/records/ctrl-nist-800-53-pm-15-6d9efa61.json","targetId":"ctrl:nist-800-53:PM-15","type":"maps_to"}],"schemaVersion":1}
