NERC CIP-002-5.1a: BES Cyber System Categorization
- R1
 - R1-1.1
 - R1-1.2
 - R1-1.3
 - R2
 - R2-2.1
 
NERC CIP-003-8: Security Management Controls
NERC CIP-004-7: Personnel & Training
- R1
 - R2
 - R2-2.1
 - R2-2.2
 - R2-2.3
 - R4
 - R4-4.1
 - R4-4.2
 - R4-4.3
 - R4-4.4
 - R5
 - R5-5.1
 - R5-5.2
 - R5-5.3
 - R5-5.4
 - R5-5.5
 
NERC CIP-005-7: Electronic Security Perimeter(s)
- R1
 - R1-1.1
 - R1-1.2
 - R1-1.3
 - R1-1.4
 - R1-1.5
 - R2
 - R2-2.1
 - R2-2.2
 - R2-2.3
 
NERC CIP-007-6: System Security Management
- R1
 - R1-1.1
 - R1-1.2
 - R2
 - R2-2.1
 - R2-2.2
 - R2-2.3
 - R2-2.4
 - R3
 - R3-3.1
 - R3-3.2
 - R3-3.3
 - R4
 - R4-4.1
 - R4-4.2
 - R4-4.3
 - R4-4.4
 - R5
 - R5-5.1
 - R5-5.2
 - R5-5.3
 - R5-5.4
 - R5-5.5
 - R5-5.6
 - R5-5.7
 
NERC CIP-009-6: Recovery Plans for BES Cyber Systems
NERC CIP-010-4: Configuration Change Management and Vulnerability Assessments
- R1
 - R1-1.1
 - R1-1.2
 - R1-1.3
 - R1-1.4
 - R2
 - R2-2.1
 - R3
 - R3-3.1
 - R3-3.2
 - R3-3.3
 - R3-3.4
 
NERC CIP-011-3: Information Protection
- R1
 - R1-1.1
 - R1-1.2
 - R2
 - R2-2.1
 - R2-2.2
 
NERC CIP-012-1: Communications between Control Centers
NERC CIP-013-2: Supply Chain Risk Management