United States (USCG)

US Maritime Transportation Security Act (MTSA) and USCG Cybersecurity Requirements

33 controls. 201 other frameworks in our corpus share controls with it. Here is all of it, and how much of it you are already doing.

Page built . This page is derived from the framework corpus, which changes when the corpus is extended rather than daily.

33 controls 201 frameworks share controls with it United States (USCG) verified against its source document

Every control below is one this framework asks for. The right hand column counts how many other frameworks in our corpus carry the same control, which is the difference between doing this work once and doing it again for the next standard.

There is no implementation kit for this framework yet. The control list and the overlap above are free and complete.

What you already have

Frameworks whose controls overlap this one, most first. If you run any of them, the count is roughly what you have already evidenced.

Every control

CodeControlAlso in
CYB-1Cybersecurity Plan Development0
CYB-2Account Security Measures82
CYB-3Device Security Measures17
CYB-4Data Security Measures0
CYB-5Cyber Incident Response Plan163
MTSA-101.105Applicability Determination1
MTSA-105.200Facility Security Officer Responsibilities1
MTSA-105.255Maritime Security (MARSEC) Level Implementation1
MTSA-105.305Facility Security Assessment1
MTSA-105.405Facility Security Plan with Cybersecurity Annex1
MTSA-Access-ControlAccess Control for Security Related Systems1
MTSA-AuditAnnual Audit of the Security Plan1
MTSA-Cyber-Incident-ResponseCyber Incident Response Procedures1
MTSA-Drills-ExercisesDrills and Exercises Including Cyber1
MTSA-Incident-ReportingReporting of Breaches of Security and Suspicious Activity1
MTSA-MonitoringContinuous Monitoring and Logging1
MTSA-NVIC-02-24Alignment with Updated USCG Cyber Policy1
MTSA-Network-SegmentationNetwork Segmentation Between IT and OT1
MTSA-OT-InventoryOperational Technology Asset Inventory1
MTSA-Patch-ManagementPatch and Vulnerability Management1
MTSA-RecordkeepingRecordkeeping and Records Protection1
MTSA-Removable-MediaRemovable Media and Portable Device Controls1
MTSA-Supply-ChainSupply Chain Risk Management for Security Systems1
MTSA-Training-CyberCybersecurity Training and Awareness1
MTSA-Vendor-Remote-AccessThird Party and Vendor Remote Access1
USMTSA-1Facility Security Assessment and Plan14
USMTSA-2Cybersecurity Assessment and CSO Designation96
USMTSA-3Reportable Suspicious Activity (RSA) and Cyber Incident Reporting0
USMTSA-4Training, Drills, Exercises0
VES-1US-Flagged Vessel Cybersecurity2
VES-2OCS Facility Cybersecurity0
VES-3Penetration Testing22
VES-4Recordkeeping Requirements0

Tell me when US Maritime Transportation Security Act (MTSA) and USCG Cybersecurity Requirements files something new

One email when a public company newly discloses something this framework governs, naming the company and what our corpus says it puts in scope. Nothing else, and one click to stop.

What an auditor will ask you to produce

The artefacts named on the failure modes this framework speaks to.

  • compliance assessment reports
  • regulatory inventory
  • corrective action plans
  • external audit certificates
  • Annual PAIA self assessment workbook
  • Corrective action register
  • Internal audit programme and reports
  • Auditor qualifications and independence
  • Management review minutes with inputs and outputs
  • Corrective action tracking

How programmes fail on this

Failure modes named by this framework and others. Each opens the full record.

What this page is

A control-level reference for US Maritime Transportation Security Act (MTSA) and USCG Cybersecurity Requirements, drawn from our framework corpus. Control codes and titles are references to the standard, not reproductions of it. The overlap counts and the auditor artefacts are our own work and are the part you will not find elsewhere.

Measure this against what you already run · All frameworks · Today's edition