NIST Special Publication 800-53 Revision 5.2.0
IDNameBaselinesThreats
LowModerateHighPrivacyOT Low (SP 800-82r3)OT Moderate (SP 800-82r3)OT High (SP 800-82r3)
SA-8(15)Predicate Permission       STRIDE-LM
SA-11(5)Penetration Testing       STRIDE-LM
SA-15Development Process, Standards, and Tools ••  ••STRIDE-LM
SA-17Developer Security and Privacy Architecture and Design  •   •STRIDE-LM
(1)Formal Policy Model       STRIDE-LM
(7)Structure for Least Privilege       STRIDE-LM
SC-2Separation of System and User Functionality ••  ••STRIDE-LM
(1)Interfaces for Non-privileged Users       STRIDE-LM
SC-3Security Function Isolation  •   •STRIDE-LM
SC-7(15)Networked Privileged Accesses       STRIDE-LM
SC-49Hardware-enforced Separation and Policy Enforcement       STRIDE-LM
SC-50Software-enforced Separation and Policy Enforcement       STRIDE-LM
SC-51Hardware-based Protection       STRIDE-LM
SI-2Flaw Remediation••• •••STRIDE-LM
(3)Time to Remediate Flaws and Benchmarks for Corrective Actions       STRIDE-LM
(4)Automated Patch Management Tools       STRIDE-LM
(5)Automatic Software and Firmware Updates       STRIDE-LM
(6)Removal of Previous Versions of Software and Firmware       STRIDE-LM
SI-4(23)Host-based Devices       STRIDE-LM
SI-7(10)Protection of Boot Firmware       STRIDE-LM
SI-16Memory Protection ••  ••STRIDE-LM