Compliance Node Overview
MITRE D3FEND D3-AI (Asset Inventory) is a foundational defensive technique that enumerates and tracks digital assets (hardware, software, services, accounts, data) to enable downstream defence. Without complete asset inventory, organisations cannot harden, detect, isolate, or evict adversary activity on unknown systems. AI is the precondition for every other defensive tactic and is required under NIST SP 800-53 CM-8 (Information System Component Inventory), ISO 27001 A.5.9 (Inventory of information and other associated assets), CIS Critical Security Controls v8 Control 1 (Inventory and Control of Enterprise Assets) and Control 2 (Inventory and Control of Software Assets), PCI DSS v4.0 Req 12.5.1, NIS2 Article 21(2)(a), and DORA Article 8.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://d3fend.mitre.org/technique/d3f:AssetInventory/
SHA-256 integrity: 17c0ca9e1ddf67e380356f29a3ed93cc960cc45cd90a557969d0479cc553975a
Primary Citations — 8 traced to source
- MITRE D3FEND Defensive Technique D3-AI: Asset Inventory (https://d3fend.mitre.org/technique/d3f:AssetInventory/)
- NIST SP 800-53 Rev 5: CM-8 (Information System Component Inventory)
+ 6 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access