Description
The organization provides, for specific locations within a facility containing concentrations of information system resources, the capability of shutting off power to any information system component that may be malfunctioning or threatened without endangering personnel by requiring them to approach the equipment.
Supplemental Guidance
Facilities containing concentrations of information system resources may include, for example, data centers, server rooms, and mainframe rooms.
Changes from Rev 4
Adds parameter for specifying applicable system or individual system components
Enhancements
(1) The organization protects the emergency power-off capability from accidental or unauthorized activation.
Compliance Mappings
ISO 27001:2022
A.7.11A.7.5
ISO 27002:2022
7.117.5
COBIT 2019
DSS01DSS05
NIST CSF 2.0
PR.IR-02
SOC 2 TSC
A1.2
CSA CCM v4
DCS-14
CSA AICM v1
DCS-14
BSI IT-Grundschutz
INF.1INF.2
ANSSI
Hygiene.38SecNumCloud.12.3
FINMA Circular 2023/1
IV.E(89)
OSFI B-13
B-13.2.6
BIO2
7.117.5
RBI CSF
Annex1.3ITGRCA.18
FISC Security Guidelines
FISC.F2
HKMA TM-E-1
TME1.5.1
DNB Good Practice
DNB.18.1
SAMA CSF
3.7
NCA ECC
1-11
UAE IA
T6
CBB TM
TM-10
Qatar NIA
PS
CBE CSF
CTO-10
SA JS2
JS2-PE
CBN CSF
Part10
BoG CISD
CISD-XIV
BoM CTRM
3.5
IOSCO Cyber Resilience
PROT-5
CPMI-IOSCO PFMI
PFMI.P17
FFIEC IS
II.C.8
HIPAA Security Rule
§164.308(a)(7)(ii)(C)§164.310(a)(2)(i)
ECB CROE
CROE.2.3.6
EBA ICT Guidelines
3.4.3
SEBI CSCRF
PR.PE
BOT Cyber Resilience
Ch2.8
CMMC 2.0
PE
ISAE 3402
Clause 4
Solvency II
EIOPA-ICT-4.5
Lloyd's Minimum Standards
PHYS.1
HITRUST CSF v11
08.b
CCSS v9.0
1.03.3
ISO 17799 (legacy)
9.2.2
COBIT 4.1 (legacy)
DS12.4