{"data":{"id":"AT-05","name":"Contacts with Security Groups and Associations","family":"AT","family_name":"Awareness and Training","withdrawn":true,"incorporated_into":["PM-15"],"description":"The organization establishes and maintains contacts with special interest groups, specialized forums, professional associations, news groups, and/or peer groups of security professionals in similar organizations to stay up to date with the latest recommended security practices, techniques, and technologies and to share the latest security-related information including threats, vulnerabilities, and incidents.","supplemental_guidance":"To facilitate ongoing security education and training for organizational personnel in an environment of rapid technology changes and dynamic threats, the organization establishes and institutionalizes contacts with selected groups and associations within the security community. The groups and associations selected are in keeping with the organization’s mission requirements. Information sharing activities regarding threats, vulnerabilities, and incidents related to information systems are consistent with applicable laws, Executive Orders, directives, policies, regulations, standards, and guidance.","enhancements":[],"baseline_low":false,"baseline_moderate":false,"baseline_high":false,"nist_800_53":{"rev5":{"id":"AT-05","name":"Contacts with Security Groups and Associations","description":"","discussion":"","related_controls":[],"baseline_low":false,"baseline_moderate":false,"baseline_high":false,"baseline_privacy":false,"new_in_rev5":false,"changes_from_rev4":""}},"compliance_mappings":{"iso_27001_2022":[],"iso_27002_2022":[],"cobit_2019":[],"pci_dss_v4":[],"nist_csf_2":[],"cis_controls_v8":[],"soc2_tsc":[],"finos_ccc":[],"iso_42001_2023":["A.3.3"],"iec_62443":[],"asd_e8":[],"nis2":[],"apra_cps_234":[],"mas_trm":[],"pra_op_resilience":[],"bsi_grundschutz":[],"anssi":["Hygiene.1","Hygiene.4"],"osfi_b13":["B-13.1.1","B-13.3.3"],"finma_circular":["IV.B.a(48)","IV.B.b(52)","IV.B.c(53)"],"gdpr":["Art.39(1)(b)"],"dora":["Art.13(6)","Art.45(1)"],"bio2":[],"rbi_csf":[],"fisc":[],"lgpd_bcb":["BCB.Art.4"],"hkma_tme1":[],"mlps_2":[],"dnb_good_practice":[],"cra":[],"swift_cscf":[],"sama_csf":["1.6"],"bom_ctrm":["3.8","5.3"],"cbe_csf":["GOV-4"],"cbn_csf":["Part8"],"eba_ict":["3.4.7"],"ffiec_is":["I.A"],"iosco_cyber":["PROT-4","SA-1","SA-2"],"sebi_cscrf":["CAPACITY","PR.AT"],"cmmc_2":["AT"],"nerc_cip":[],"nrc_73_54":[],"tsa_psd":[],"ieee_1686":[],"ferc_cip":[],"doe_c2m2":[],"api_1164":[],"awia":[],"iaea_nss":[],"pci_pts":[],"fips_140":[],"cbest":[],"tiber_eu":[],"pci_hsm":[],"common_criteria":[],"isae_3402":[],"fca_sysc_13":[],"fda_21_cfr_11":[],"fda_cyber":[],"hitrust_csf":[],"iso_27799":[],"lloyds_ms":["MS8.13"],"naic_ds":[],"nhs_dspt":[],"pra_ss1_23":[],"solvency_ii":[],"owasp_masvs_v2":[],"csa_ccm_v4":[],"csa_aicm":[],"ccss_v9":[],"mica":[],"basel_sco60":[],"bssc":[],"sec_custody_digital":[],"dpdpa":[]},"attack_techniques":[],"metadata":{"last_reviewed":"2026-10-03","review_notes":"2026-10-02: recorded as withdrawn in SP 800-53 Rev 5, incorporated into PM-15, from NIST's Rev 5.2.0 catalogue. 2026-10-03: baselines LMH to ---, withdrawn in Rev 5 and in no baseline of NIST SP 800-53B Release 5.2.0.","mapping_status":"complete"},"function":"preventative","used_by_patterns":["SP-014","SP-019"]}}