NIST 800-53 REV 5 • PHYSICAL AND ENVIRONMENTAL PROTECTION

PE-14Environmental Controls

Maintain {{ insert: param, pe-14_odp.01 }} levels within the facility where the system resides at {{ insert: param, pe-14_odp.03 }} ; and Monitor environmental control levels {{ insert: param, pe-14_odp.04 }}.

CMMC Practice Mapping

No direct CMMC mapping

NIST 800-171 Mapping

No direct NIST 800-171 mapping

Related Controls

Supplemental Guidance

The provision of environmental controls applies primarily to organizational facilities that contain concentrations of system resources (e.g., data centers, mainframe computer rooms, and server rooms). Insufficient environmental controls, especially in very harsh environments, can have a significant adverse impact on the availability of systems and system components that are needed to support organizational mission and business functions.

Practitioner Notes

Environmental controls — temperature, humidity, and airflow — must be maintained within acceptable ranges for your equipment. Servers that overheat fail, and excessive humidity causes corrosion and short circuits.

Example 1: Install a dedicated HVAC system or precision cooling unit for your server room. Maintain temperature between 64-80°F (18-27°C) and relative humidity between 40-60% per ASHRAE recommendations. Install temperature and humidity sensors that display current readings and log historical data.

Example 2: Use environmental monitoring tools (APC NetBotz, Vertiv Liebert, or Paessler PRTG with environmental sensors) to continuously monitor temperature and humidity. Set alert thresholds at 5 degrees below the critical limit so you have time to respond. Send alerts via email, text, or Teams to IT and facilities staff.