Categorize the system and information it processes, stores, and transmits;
لغة النص الأصلي: الإنجليزية
القائمة
Skills في هذا المستودع
جمع SkillsMP عدد ٧٬٤٤٢ من skills من CyberStrikeus/CyberStrike. افتح أي skill لمراجعة مصدره وتفاصيله.
CyberStrikeus/CyberStrikeعرض ٤٠ من أصل ٧٬٤٤٢ skills مجمعة.
Categorize the system and information it processes, stores, and transmits;
لغة النص الأصلي: الإنجليزية
Assess supply chain risks associated with [organization-defined] ;
لغة النص الأصلي: الإنجليزية
Use all-source intelligence to assist in the analysis of risk.
لغة النص الأصلي: الإنجليزية
Determine the current cyber threat environment on an ongoing basis using [organization-defined].
لغة النص الأصلي: الإنجليزية
Employ the following advanced automation and analytics capabilities to predict and identify risks to [organization-defined]: [organization-defined].
لغة النص الأصلي: الإنجليزية
Conduct a risk assessment, including: Identifying threats to and vulnerabilities in the system; Determining the likelihood and magnitude of harm from
لغة النص الأصلي: الإنجليزية
Risk Assessment Update
لغة النص الأصلي: الإنجليزية
Update Tool Capability
لغة النص الأصلي: الإنجليزية
Correlate the output from vulnerability scanning tools to determine the presence of multi-vulnerability and multi-hop attack vectors.
لغة النص الأصلي: الإنجليزية
Establish a public reporting channel for receiving reports of vulnerabilities in organizational systems and system components.
لغة النص الأصلي: الإنجليزية
Update the system vulnerabilities to be scanned [organization-defined].
لغة النص الأصلي: الإنجليزية
Define the breadth and depth of vulnerability scanning coverage.
لغة النص الأصلي: الإنجليزية
Determine information about the system that is discoverable and take [organization-defined].
لغة النص الأصلي: الإنجليزية
Implement privileged access authorization to [organization-defined] for [organization-defined].
لغة النص الأصلي: الإنجليزية
Compare the results of multiple vulnerability scans using [organization-defined].
لغة النص الأصلي: الإنجليزية
Review historic audit logs to determine if a vulnerability identified in a [organization-defined] has been previously exploited within an [organizatio
لغة النص الأصلي: الإنجليزية
Penetration Testing and Analyses
لغة النص الأصلي: الإنجليزية
Monitor and scan for vulnerabilities in the system and hosted applications [organization-defined] and when new vulnerabilities potentially affectin...
لغة النص الأصلي: الإنجليزية
Employ a technical surveillance countermeasures survey at [organization-defined] [organization-defined].
لغة النص الأصلي: الإنجليزية
Respond to findings from security and privacy assessments, monitoring, and audits in accordance with organizational risk tolerance.
لغة النص الأصلي: الإنجليزية
Conduct privacy impact assessments for systems, programs, or other activities before: Developing or procuring information technology that processes pe
لغة النص الأصلي: الإنجليزية
Identify critical system components and functions by performing a criticality analysis for [organization-defined] at [organization-defined].
لغة النص الأصلي: الإنجليزية
Develop, document, and disseminate to [organization-defined]: [organization-defined] system and services acquisition policy that: Procedures to facili
لغة النص الأصلي: الإنجليزية
Require the developer of the system, system component, or system service to enable integrity verification of software and firmware components.
لغة النص الأصلي: الإنجليزية
Provide an alternate configuration management process using organizational personnel in the absence of a dedicated developer configuration management
لغة النص الأصلي: الإنجليزية
Require the developer of the system, system component, or system service to enable integrity verification of hardware components.
لغة النص الأصلي: الإنجليزية
Require the developer of the system, system component, or system service to employ tools for comparing newly generated versions of security-relevant h
لغة النص الأصلي: الإنجليزية
Require the developer of the system, system component, or system service to maintain the integrity of the mapping between the master build data descri
لغة النص الأصلي: الإنجليزية
Require the developer of the system, system component, or system service to execute procedures for ensuring that security-relevant hardware, software,
لغة النص الأصلي: الإنجليزية
Require [organization-defined] to be included in the [organization-defined].
لغة النص الأصلي: الإنجليزية
Require the developer of the system, system component, or system service to: Perform configuration management during system, component, or service [or
لغة النص الأصلي: الإنجليزية
Require the developer of the system, system component, or system service to employ static code analysis tools to identify common flaws and document th
لغة النص الأصلي: الإنجليزية
Require the developer of the system, system component, or system service to perform threat modeling and vulnerability analyses during development and
لغة النص الأصلي: الإنجليزية
Require the developer of the system, system component, or system service to perform a manual code review of [organization-defined] using the following
لغة النص الأصلي: الإنجليزية
Require the developer of the system, system component, or system service to perform penetration testing: At the following level of rigor: [organizatio
لغة النص الأصلي: الإنجليزية
Require the developer of the system, system component, or system service to perform attack surface reviews.
لغة النص الأصلي: الإنجليزية
Require the developer of the system, system component, or system service to verify that the scope of testing and evaluation provides complete coverage
لغة النص الأصلي: الإنجليزية
Require the developer of the system, system component, or system service to employ dynamic code analysis tools to identify common flaws and document t
لغة النص الأصلي: الإنجليزية
Require the developer of the system, system component, or system service to employ interactive application security testing tools to identify flaws an
لغة النص الأصلي: الإنجليزية
Require the developer of the system, system component, or system service, at all post-design stages of the system development life cycle, to: Develop
لغة النص الأصلي: الإنجليزية