Current State
Security profile at the time of the assessment.
CIS Gap Assessment is one of the most effective starting points for assessing organizations security. Many small businesses can quickly obtain an objective view at their security posture and start prioritizing remediation activities.
CIS control gap assessment creates a bird’s eye view at your security program based on 18 critical security controls. These controls consist of 153 safeguards, which can be mapped to popular security frameworks like NIST, ISO, PCI DSS and other.
All safeguards are split into Implementation Groups, which help with prioritization of remediation activities.
CIS Controls help to identify the current state of your security profile and provide guidance how to address the gap in order to reach target security program state.
Security profile at the time of the assessment.
Required remediation activities to reach desired state.
Security profile that is conducive to achieving organizational goals.
Most security frameworks target a number of Security Functions.
Each security control and safeguard addresses at least one of those functions and must be mapped to the organizational risk.
DAYS 1-30: ASSESSMENT
Detailed report with identified gaps and recommendations categorized by:
DAYS 31-60: STRATEGIC ROAD MAP
DAYS 61-90: REMEDIATION
Continuous support through remediation activities