Requirement:
The cybersecurity requirements for protecting information systems and information processing facilities must be implemented.
Control Implementation Guidelines:
- Implement all cybersecurity requirements for Information System and Processing Facilities Protection in the organization. This may include the following
- Modern and advanced protection techniques and mechanisms’ availability and reliability must be ensured
- Scope of devices to be protected and reviewed periodically must be ensured
- Use of external storage media and its security must be restricted
- Patches throughout the organization's devices, systems, and applications must be implemented
- Central Clock Synchronization and from a reliable source must be implemented
Expected Deliverables:
- Documents that confirm the implementation of cybersecurity requirements related to information systems and processing facilities as documented in the policy
- An up-to-date list of the organization's virus protection systems and the extent of their download
- Restrict the use of external storage media and procedures for approving their use
- Evidence that the scope of patches covers all devices, systems and applications
- Evidence that the organization uses a central server and a reliable source for timing synchronization
Quick & Simple
Discover Our Cybersecurity Compliance Solutions:
Whether you need to meet and maintain your compliance requirements, help your clients meet them, or verify supplier compliance we have the expertise and solution for you