Essential Cybersecurity Controls (ECC – 2 : 2024) 2-10-3 Requirement:
- The cybersecurity requirements for technical vulnerabilities management must include at least the following:
- Periodic vulnerabilities assessments.
- Vulnerabilities classification based on criticality level.
- Vulnerabilities remediation based on classification and associated risk levels.
- Security patch management.
- Subscription with authorized and trusted cybersecurity resources for up-to-date information and notifications on technical vulnerabilities.
Quick & Simple
Discover Our Cybersecurity Compliance Solutions:
Whether you need to meet and maintain your compliance requirements, help your clients meet them, or verify supplier compliance we have the expertise and solution for you