|
DE.CM-09.2: The organisation shall implement hardware integrity checks to detect unauthorised tampering of critical system hardware. Controls shall be proportionate to the organ- isation’s risk profile and operational capacity.
|
http://cyfun.data.gift/data/requirement_DE_CM_09_2
|
17 |
|
DE.CM-09.3: The organisation's incident response plan shall include measures to detect unau- thorised tampering with the hardware of critical systems.
|
http://cyfun.data.gift/data/requirement_DE_CM_09_3
|
17 |
|
DE.CM-09.4: The organisation shall establish a system to accurately distinguish between legitimate alerts and false positives, ensuring effective detection and removal of malicious code.
|
http://cyfun.data.gift/data/requirement_DE_CM_09_4
|
17 |
|
DE.CM-09: Computing hardware and software, runtime environments, and their data are monitored to find potentially adverse events
|
http://cyfun.data.gift/data/nist_subcategory_DE_CM_09
|
5 |
|
DE.CM-09: Computing hardware and software, runtime environments, and their data are monitored to find potentially adverse events
|
http://cyfun.data.gift/data/subcategory_DE.CM-09
|
21 |
|
DE.CM: Continuous Monitoring
|
http://cyfun.data.gift/data/category_DE.CM
|
29 |
|
DE.CM: Continuous Monitoring
|
http://cyfun.data.gift/data/nist_category_DE_CM
|
5 |
|
DE: DETECT
|
http://cyfun.data.gift/data/function_DE
|
20 |
|
DE: DETECT
|
http://cyfun.data.gift/data/nist_function_DE
|
5 |
|
GV.OC-01.1: The organisation's mission shall be established, communicated and shall form the basis for information and cybersecurity risk management.
|
http://cyfun.data.gift/data/requirement_GV_OC_01_1
|
19 |
|
GV.OC-01: The organizational mission is understood and informs cybersecurity risk management
|
http://cyfun.data.gift/data/nist_subcategory_GV_OC_01
|
5 |
|
GV.OC-01: The organizational mission is understood and informs cybersecurity risk management
|
http://cyfun.data.gift/data/subcategory_GV.OC-01
|
15 |