For password-based authentication: Maintain a list of commonly-used, expected, or compromised passwords and update the list [organization-defined] and
原文语言:英语
菜单
这个仓库中的 skills
SkillsMP 已收集 CyberStrikeus/CyberStrike 中的 7,442 个 Skill。打开任一 Skill 可查看来源和详情。
CyberStrikeus/CyberStrike已展示 40 / 7,442 个已收集 Skill。
For password-based authentication: Maintain a list of commonly-used, expected, or compromised passwords and update the list [organization-defined] and
原文语言:英语
Bind identities and authenticators dynamically using the following rules: [organization-defined].
原文语言:英语
Hardware Token-based Authentication
原文语言:英语
For biometric-based authentication, employ mechanisms that satisfy the following biometric quality requirements [organization-defined].
原文语言:英语
Prohibit the use of cached authenticators after [organization-defined].
原文语言:英语
For PKI-based authentication, employ an organization-wide methodology for managing the content of PKI trust stores installed across all platforms, inc
原文语言:英语
Use only General Services Administration-approved products and services for identity, credential, and access management.
原文语言:英语
Employ [organization-defined] to generate and manage passwords;
原文语言:英语
For public key-based authentication: Enforce authorized access to the corresponding private key; and Map the authenticated identity to the account of
原文语言:英语
In-person or Trusted External Party Registration
原文语言:英语
Automated Support for Password Strength Determination
原文语言:英语
Require developers and installers of system components to provide unique authenticators or change default authenticators prior to delivery and install
原文语言:英语
Protect authenticators commensurate with the security category of the information to which use of the authenticator permits access.
原文语言:英语
Ensure that unencrypted static authenticators are not embedded in applications or other forms of static storage.
原文语言:英语
Implement [organization-defined] to manage the risk of compromise due to individuals having accounts on multiple systems.
原文语言:英语
Use the following external organizations to federate credentials: [organization-defined].
原文语言:英语
Manage system authenticators by: Verifying, as part of the initial authenticator distribution, the identity of the individual, group, role, service, o
原文语言:英语
Obscure feedback of authentication information during the authentication process to protect the information from possible exploitation and use by unau
原文语言:英语
Implement mechanisms for authentication to a cryptographic module that meet the requirements of applicable laws, executive orders, directives, policie
原文语言:英语
Accept and electronically verify Personal Identity Verification-compliant credentials from other federal agencies.
原文语言:英语
Accept only external authenticators that are NIST-compliant;
原文语言:英语
Use of FICAM-approved Products
原文语言:英语
Conform to the following profiles for identity management [organization-defined].
原文语言:英语
Accept and verify federated or PKI credentials that meet [organization-defined].
原文语言:英语
Implement the following measures to disassociate user attributes or identifier assertion relationships among individuals, credential service providers
原文语言:英语
Uniquely identify and authenticate non-organizational users or processes acting on behalf of non-organizational users.
原文语言:英语
Information Exchange
原文语言:英语
Transmission of Decisions
原文语言:英语
Uniquely identify and authenticate [organization-defined] before establishing communications with devices, users, or other services or applications.
原文语言:英语
Develop, document, and disseminate to [organization-defined]: [organization-defined] incident response policy that: Procedures to facilitate the imple
原文语言:英语
Integrated Information Security Analysis Team
原文语言:英语
Incorporate simulated events into incident response training to facilitate the required response by personnel in crisis situations.
原文语言:英语
Provide an incident response training environment using [organization-defined].
原文语言:英语
Provide incident response training on how to identify and respond to a breach, including the organization’s process for reporting a breach.
原文语言:英语
Provide incident response training to system users consistent with assigned roles and responsibilities: Within [organization-defined] of assuming an i
原文语言:英语
Test the incident response capability using [organization-defined].
原文语言:英语
Coordinate incident response testing with organizational elements responsible for related plans.
原文语言:英语
Use qualitative and quantitative data from testing to: Determine the effectiveness of incident response processes; Continuously improve incident respo
原文语言:英语
Test the effectiveness of the incident response capability for the system [organization-defined] using the following tests: [organization-defined].
原文语言:英语
Support the incident handling process using [organization-defined].
原文语言:英语