Skip to main content

这个仓库中的 skills

CyberStrikeus/CyberStrike - 第 108 页

SkillsMP 已收集 CyberStrikeus/CyberStrike 中的 7,442 个 Skill。打开任一 Skill 可查看来源和详情。

CyberStrikeus/CyberStrike

已展示 40 / 7,442 个已收集 Skill。

职业分类
合规官员
描述

Planning and due diligence are performed to reduce risks before entering into formal supplier or other third-party relationships

原文语言:英语

更新
职业分类
合规官员
描述

The risks posed by a supplier, their products and services, and other third parties are understood, recorded, prioritized, assessed, responded to, and

原文语言:英语

更新
职业分类
合规官员
描述

Relevant suppliers and other third parties are included in incident planning, response, and recovery activities

原文语言:英语

更新
职业分类
信息安全分析师
描述

Supply chain security practices are integrated into cybersecurity and enterprise risk management programs, and their performance is monitored througho

原文语言:英语

更新
职业分类
信息安全分析师
描述

Cybersecurity supply chain risk management plans include provisions for activities that occur after the conclusion of a partnership or service agreeme

原文语言:英语

更新
职业分类
信息安全分析师
描述

The circumstances - mission, stakeholder expectations, dependencies, and legal, regulatory, and contractual requirements - surrounding the organizatio

原文语言:英语

更新
职业分类
信息安全分析师
描述

Results of organization-wide cybersecurity risk management activities and performance are used to inform, improve, and adjust the risk management stra

原文语言:英语

更新
职业分类
信息安全分析师
描述

Organizational cybersecurity policy is established, communicated, and enforced

原文语言:英语

更新
职业分类
信息安全分析师
描述

The organization's priorities, constraints, risk tolerance and appetite statements, and assumptions are established, communicated, and used to support

原文语言:英语

更新
职业分类
信息安全分析师
描述

Assets (e.g., data, hardware, software, systems, facilities, services, people) that enable the organization to achieve business purposes are identifie

原文语言:英语

更新
职业分类
信息安全分析师
描述

Inventories of hardware managed by the organization are maintained

原文语言:英语

更新
职业分类
信息安全分析师
描述

Inventories of software, services, and systems managed by the organization are maintained

原文语言:英语

更新
职业分类
信息安全分析师
描述

Representations of the organization's authorized network communication and internal and external network data flows are maintained

原文语言:英语

更新
职业分类
信息安全分析师
描述

Inventories of services provided by suppliers are maintained

原文语言:英语

更新
职业分类
信息安全分析师
描述

Assets are prioritized based on classification, criticality, resources, and impact on the mission

原文语言:英语

更新
职业分类
信息安全分析师
描述

Cybersecurity roles and responsibilities for the entire workforce and third-party stakeholders (e.g., suppliers, customers, partners) are established

原文语言:英语

更新
职业分类
信息安全分析师
描述

Inventories of data and corresponding metadata for designated data types are maintained

原文语言:英语

更新
职业分类
信息安全分析师
描述

Systems, hardware, software, services, and data are managed throughout their life cycles

原文语言:英语

更新
职业分类
信息安全分析师
描述

The organization’s role in the supply chain is identified and communicated

原文语言:英语

更新
职业分类
信息安全分析师
描述

The organization’s place in critical infrastructure and its industry sector is identified and communicated

原文语言:英语

更新
职业分类
信息安全分析师
描述

Priorities for organizational mission, objectives, and activities are established and communicated

原文语言:英语

更新
职业分类
信息安全分析师
描述

Dependencies and critical functions for delivery of critical services are established

原文语言:英语

更新
职业分类
信息安全分析师
描述

Resilience requirements to support delivery of critical services are established for all operating states (e.g.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Organizational cybersecurity policy is established and communicated

原文语言:英语

更新
职业分类
信息安全分析师
描述

Cybersecurity roles and responsibilities are coordinated and aligned with internal roles and external partners

原文语言:英语

更新
职业分类
信息安全分析师
描述

Legal and regulatory requirements regarding cybersecurity, including privacy and civil liberties obligations, are understood and managed

原文语言:英语

更新
职业分类
信息安全分析师
描述

Governance and risk management processes address cybersecurity risks

原文语言:英语

更新
职业分类
信息安全分析师
描述

Improvements are identified from evaluations

原文语言:英语

更新
职业分类
信息安全分析师
描述

Improvements are identified from security tests and exercises, including those done in coordination with suppliers and relevant third parties

原文语言:英语

更新
职业分类
信息安全分析师
描述

Improvements are identified from execution of operational processes, procedures, and activities

原文语言:英语

更新
职业分类
信息安全分析师
描述

Incident response plans and other cybersecurity plans that affect operations are established, communicated, maintained, and improved

原文语言:英语

更新
职业分类
信息安全分析师
描述

Vulnerabilities in assets are identified, validated, and recorded

原文语言:英语

更新
职业分类
信息安全分析师
描述

Cyber threat intelligence is received from information sharing forums and sources

原文语言:英语

更新
职业分类
信息安全分析师
描述

Internal and external threats to the organization are identified and recorded

原文语言:英语

更新
职业分类
信息安全分析师
描述

Potential impacts and likelihoods of threats exploiting vulnerabilities are identified and recorded

原文语言:英语

更新
职业分类
信息安全分析师
描述

Threats, vulnerabilities, likelihoods, and impacts are used to understand inherent risk and inform risk response prioritization

原文语言:英语

更新
职业分类
信息安全分析师
描述

Risk responses are chosen, prioritized, planned, tracked, and communicated

原文语言:英语

更新
职业分类
信息安全分析师
描述

Changes and exceptions are managed, assessed for risk impact, recorded, and tracked

原文语言:英语

更新
已展示 40 / 7,442 个已收集 Skill。