Estructura CIS Controls con SGSI
Correlación control por control entre CIS Controls y el SGSI de Kudo, con la estructura completa lista para auditorías y evidencias.
Tabla de las 153 salvaguardas de CIS Controls v8 organizadas por control y mapeadas a las políticas del SGSI de Kudo.
CIS 1 — Inventory and Control of Enterprise Assets
| Código | Política SGSI |
|---|---|
| 1.1 | Política de Gestión de Activos |
| 1.2 | Política de Gestión de Activos |
| 1.3 | Política de Gestión de Activos |
| 1.4 | Política de Gestión de Activos |
| 1.5 | Política de Gestión de Activos |
CIS 2 — Inventory and Control of Software Assets
CIS 3 — Data Protection
CIS 4 — Secure Configuration of Enterprise Assets and Software
CIS 5 — Account Management
CIS 6 — Access Control Management
CIS 7 — Continuous Vulnerability Management
CIS 8 — Audit Log Management
CIS 9 — Email and Web Browser Protections
CIS 10 — Malware Defenses
| Código | Política SGSI |
|---|---|
| 10.1 | Política de Hardening |
| 10.2 | Política de Hardening |
| 10.3 | Política de Hardening |
| 10.4 | Política de Hardening |
| 10.5 | Política de Hardening |
| 10.6 | Política de Hardening |
| 10.7 | Política de Registro y Monitoreo |
CIS 11 — Data Recovery
CIS 12 — Network Infrastructure Management
CIS 13 — Network Monitoring and Defense
CIS 14 — Security Awareness and Skills Training
CIS 15 — Service Provider Management
CIS 16 — Application Software Security
CIS 17 — Incident Response Management
CIS 18 — Penetration Testing
| Código | Política SGSI |
|---|---|
| 18.1 | Política de Gestión de Incidentes |
| 18.2 | Política de Hardening |
| 18.3 | Política de Hardening |
| 18.4 | Política de Gestión de Incidentes |
| 18.5 | Política de Gestión de Cumplimiento |