The physical environment is monitored to find potentially adverse events
Quellsprache: Englisch
Menü
Skills in diesem Repository
SkillsMP hat 7.442 Skills aus CyberStrikeus/CyberStrike gesammelt. Öffne einen Skill, um Quelle und Details zu prüfen.
CyberStrikeus/CyberStrikeEs werden 40 von 7.442 gesammelten Skills angezeigt.
The physical environment is monitored to find potentially adverse events
Quellsprache: Englisch
Personnel activity and technology usage are monitored to find potentially adverse events
Quellsprache: Englisch
Malicious code is detected
Quellsprache: Englisch
Unauthorized mobile code is detected
Quellsprache: Englisch
External service provider activities and services are monitored to find potentially adverse events
Quellsprache: Englisch
Monitoring for unauthorized personnel, connections, devices, and software is performed
Quellsprache: Englisch
Vulnerability scans are performed
Quellsprache: Englisch
Computing hardware and software, runtime environments, and their data are monitored to find potentially adverse events
Quellsprache: Englisch
Roles and responsibilities for detection are well defined to ensure accountability
Quellsprache: Englisch
Detection activities comply with all applicable requirements
Quellsprache: Englisch
Detection processes are tested
Quellsprache: Englisch
Event detection information is communicated
Quellsprache: Englisch
Detection processes are continuously improved
Quellsprache: Englisch
Detection Processes
Quellsprache: Englisch
The organizational mission is understood and informs cybersecurity risk management
Quellsprache: Englisch
Internal and external stakeholders are understood, and their needs and expectations regarding cybersecurity risk management are understood and conside
Quellsprache: Englisch
Legal, regulatory, and contractual requirements regarding cybersecurity - including privacy and civil liberties obligations - are understood and manag
Quellsprache: Englisch
Critical objectives, capabilities, and services that external stakeholders depend on or expect from the organization are understood and communicated
Quellsprache: Englisch
Outcomes, capabilities, and services that the organization depends on are understood and communicated
Quellsprache: Englisch
Cybersecurity risk management strategy outcomes are reviewed to inform and adjust strategy and direction
Quellsprache: Englisch
The cybersecurity risk management strategy is reviewed and adjusted to ensure coverage of organizational requirements and risks
Quellsprache: Englisch
Organizational cybersecurity risk management performance is evaluated and reviewed for adjustments needed
Quellsprache: Englisch
Policy for managing cybersecurity risks is established based on organizational context, cybersecurity strategy, and priorities and is communicated and
Quellsprache: Englisch
Policy for managing cybersecurity risks is reviewed, updated, communicated, and enforced to reflect changes in requirements, threats, technology, and
Quellsprache: Englisch
Risk management objectives are established and agreed to by organizational stakeholders
Quellsprache: Englisch
Risk appetite and risk tolerance statements are established, communicated, and maintained
Quellsprache: Englisch
Cybersecurity risk management activities and outcomes are included in enterprise risk management processes
Quellsprache: Englisch
Strategic direction that describes appropriate risk response options is established and communicated
Quellsprache: Englisch
Lines of communication across the organization are established for cybersecurity risks, including risks from suppliers and other third parties
Quellsprache: Englisch
A standardized method for calculating, documenting, categorizing, and prioritizing cybersecurity risks is established and communicated
Quellsprache: Englisch
Strategic opportunities (i.e., positive risks) are characterized and are included in organizational cybersecurity risk discussions
Quellsprache: Englisch
Organizational leadership is responsible and accountable for cybersecurity risk and fosters a culture that is risk-aware, ethical, and continually imp
Quellsprache: Englisch
Roles, responsibilities, and authorities related to cybersecurity risk management are established, communicated, understood, and enforced
Quellsprache: Englisch
Adequate resources are allocated commensurate with the cybersecurity risk strategy, roles, responsibilities, and policies
Quellsprache: Englisch
Cybersecurity is included in human resources practices
Quellsprache: Englisch
A cybersecurity supply chain risk management program, strategy, objectives, policies, and processes are established and agreed to by organizational st
Quellsprache: Englisch
Cybersecurity roles and responsibilities for suppliers, customers, and partners are established, communicated, and coordinated internally and external
Quellsprache: Englisch
Cybersecurity supply chain risk management is integrated into cybersecurity and enterprise risk management, risk assessment, and improvement processes
Quellsprache: Englisch
Suppliers are known and prioritized by criticality
Quellsprache: Englisch
Requirements to address cybersecurity risks in supply chains are established, prioritized, and integrated into contracts and other types of agreements
Quellsprache: Englisch