Dodati NIST CSF 2.0 #31
Reference in New Issue
Block a user
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Zamijeniti kontrole u registru, umjesto CIS 18 ubaciti NIST CSF 2.0
Ovdje se moze uraditi export u JSON:
https://csrc.nist.rip/Projects/Cybersecurity-Framework/Filters#/csf/filters
Kontrole se pohranjuju centralni registar, kao sto su trenutno CIS 18 kontrole. U Registru kontrola treba omoguciti nekoliko polja za svaku kontrolu:
Mozda bude jos ovih kolona nekad.
Primjer jedne kontrole:
Subcategory
GV.SC-06: Planning and due diligence are performed to reduce risks before entering into formal supplier or other third-party relationships
Implementation Examples
Ex1: Perform thorough due diligence on prospective suppliers that is consistent with procurement planning and commensurate with the level of risk, criticality, and complexity of each supplier relationship
Ex2: Assess the suitability of the technology and cybersecurity capabilities and the risk management practices of prospective suppliers
Ex3: Conduct supplier risk assessments against business and applicable cybersecurity requirements, including lower-tier suppliers and the supply chain for critical suppliers
Ex4: Assess the authenticity, integrity, and security of critical products prior to acquisition and use
Primjer za kontrole. CyFun_Self-Assessment_tool_V2024-11-05.xlsx