Overview:Periodically assess the risk to organizational operations (including mission, functions, image, or reputation), organizational assets, and individuals, resulting from the operation of organizational information systems and the associated... Read More
Risk Assessment
Overview:Remediate vulnerabilities in accordance with assessments of risk. Action Items:3.11.3[a]Determine if: vulnerabilities are identified. 3.11.3[b]Determine if: vulnerabilities are remediated in accordance with risk assessments. POTENTIAL... Read More
Overview:Scan for vulnerabilities in the information system and applications periodically and when new vulnerabilities affecting the system are identified. Action Items:3.11.2[a]Determine if: the frequency to scan for vulnerabilities in... Read More