File contents RS.MI-01 RS.MI-01
Subcategory of: Incident Mitigation (RS.MI)
High-Level Description
Function: RESPOND (RS)
Framework: NIST Cybersecurity Framework v2.0
Incidents are contained
What to Check
How to Test
Step 1: Identify Current Profile
Determine the organization's current and target CSF profile tier for RS.MI-01.
Step 2: Assess Outcome Achievement
# Review organizational policies and procedures
# Check for evidence that RS.MI-01 outcome is met
# Interview stakeholders responsible for RESPOND
Step 3: Map to Technical Controls
Identify which SP 800-53 controls implement this CSF outcome and verify their operating effectiveness.
Tools
Tool
Purpose
Usage
cloud-audit-mcp
Assess cloud security posture
cloud_audit_* tools
Manual Review
Policy and procedure review
Interviews and documentation
Remediation Guide
Achieve the RS.MI-01 RS.MI-01 outcome:
Incidents are contained
Risk Assessment
Finding
Severity
Impact
RS.MI-01 RS.MI-01 outcome not achieved
Medium
RESPOND Function Gap
CWE Categories
CWE ID
Title
N/A
No direct CWE mapping
References
Checklist
1 --- 2 name: rs-mi-01-rsmi-01 3 description: Incidents are contained 4 --- 5 6 # RS.MI-01 RS.MI-01 7 8 > **Subcategory of:** Incident Mitigation (RS.MI) 9 10 ## High-Level Description 11 12 **Function:** RESPOND (RS) 13 **Framework:** NIST Cybersecurity Framework v2.0 14 15 Incidents are contained 16 17 ## What to Check 18 19 - [ ] Verify RS.MI-01 RS.MI-01 outcome is achieved 20 - [ ] Review documentation and evidence for RS.MI-01 21 - [ ] Assess organizational maturity for RESPOND function 22 - [ ] Map to SP 800-53 controls that satisfy RS.MI-01 23 24 ## How to Test 25 26 ### Step 1: Identify Current Profile 27 28 Determine the organization's current and target CSF profile tier for RS.MI-01. 29 30 ### Step 2: Assess Outcome Achievement 31 32 ``` 33 # Review organizational policies and procedures 34 # Check for evidence that RS.MI-01 outcome is met 35 # Interview stakeholders responsible for RESPOND 36 ``` 37 38 ### Step 3: Map to Technical Controls 39 40 Identify which SP 800-53 controls implement this CSF outcome and verify their operating effectiveness. 41 42 ## Tools 43 44 | Tool | Purpose | Usage | 45 | --------------- | ----------------------------- | ---------------------------- | 46 | cloud-audit-mcp | Assess cloud security posture | `cloud_audit_*` tools | 47 | Manual Review | Policy and procedure review | Interviews and documentation | 48 49 ## Remediation Guide 50 51 Achieve the RS.MI-01 RS.MI-01 outcome: 52 53 Incidents are contained 54 55 ## Risk Assessment 56 57 | Finding | Severity | Impact | 58 | -------------------------------------- | -------- | -------------------- | 59 | RS.MI-01 RS.MI-01 outcome not achieved | Medium | RESPOND Function Gap | 60 61 ## CWE Categories 62 63 | CWE ID | Title | 64 | ------ | --------------------- | 65 | N/A | No direct CWE mapping | 66 67 ## References 68 69 - [NIST CSF v2.0](https://www.nist.gov/cyberframework) 70 - [NIST CSF v2.0 Reference Tool](https://csrc.nist.gov/projects/cybersecurity-framework/filters#/csf/filters) 71 - [CSF 2.0 Quick Start Guides](https://www.nist.gov/cyberframework/getting-started) 72 73 ## Checklist 74 75 - [ ] Current profile tier assessed 76 - [ ] Target profile tier defined 77 - [ ] Gap analysis completed 78 - [ ] SP 800-53 control mapping verified 79 - [ ] Implementation roadmap exists
cyberstrikeus/cyberstrike/tree/main/.cyberstrike/skill/NIST/CSF_v2.0/RS_respond/RS.MI-01_rsmi-01 commit c58372f786
Frequently asked questions How do I install the RS.MI-01_rsmi-01 skill? Run npx skillmds@latest add cyberstrikeus/rs-mi-01-rsmi-01 in your terminal (requires Node.js), paste this page's agent-chat prompt into Claude, Cursor, or any MCP-connected agent, or download the SKILL.md file and copy it into your agent's skills directory.
What does the RS.MI-01_rsmi-01 skill do? Incidents are contained It is listed under Coding & Dev Tools on SkillMD.
Is RS.MI-01_rsmi-01 safe to use? SkillMD's automated safety review verdict for this skill is PASS. Independent scanners report: SkillSpector: PASS, Skill Scanner: PASS. SkillMD never runs a skill's scripts for you; review the SKILL.md before installing.
Which AI agents work with RS.MI-01_rsmi-01? This skill is tagged as working with Claude Code, Claude.ai, OpenAI Codex. SKILL.md is an open format, so most agents that read a skills directory can load it too.
Is RS.MI-01_rsmi-01 free to use? Yes. Installing skills from SkillMD is free, and the skill stays under its author's original license.
Who published RS.MI-01_rsmi-01? cyberstrikeus (@cyberstrikeus) published this skill. Their other Agent Skills are listed on their SkillMD profile.