3.1.1e | Dual Authorization for Sensitive System Operations | 19 |
3.1.2e | Restrict Access to Organization-Owned, Provisioned, or Issued Information Resources | 19 |
3.1.3e | Employ Secure Information Transfer Solutions | 20 |
3.11.1e | Threat-Aware Risk Assessment | 22 |
3.11.2e | Threat Hunting | 15 |
3.11.3e | Advanced Automation and Analytics Capabilities | 18 |
3.11.4e | Security Solution Rationale Document | 18 |
3.11.5e | Assess Effectiveness of Security Solutions | 23 |
3.11.6e | Supply Chain Risk Assessment, Response, and Monitoring | 20 |
3.11.7e | Supply Chain Risk Management Plan | 19 |
3.12.1e | Penetration Testing by Independent Agents | 22 |
3.13.1e | Create Diversity in System Components to Limit Malicious Code Propagation | 18 |
3.13.2e | Introduce Unpredictability into System Operations | 22 |
3.13.3e | Confuse and Mislead Adversaries | 8 |
3.13.4e | Physical and Logical Isolation Techniques | 7 |
3.13.5e | Distribute and Relocate System Functions or Resources | 3 |
3.14.1e | Verify Integrity of Security Critical Software and Firmware | 19 |
3.14.2e | Monitor Organizational Systems with Specialized Capabilities | 21 |
3.14.3e | Include Systems in Scope of Enhanced Requirements or Segregate into Purpose-Specific Networks | 20 |
3.14.4e | Refresh Systems and Components from a Trusted Baseline | 19 |
3.14.5e | Review Persistent Storage and Remove CUI No Longer Needed | 20 |
3.14.6e | Use Threat Indicator Information for Detection | 19 |
3.14.7e | Verify Correctness of Security Functions | 19 |
3.2.1e | Provide Awareness Training on Advanced Persistent Threat | 22 |
3.2.2e | Practical Exercises in Awareness Training | 19 |
3.4.1e | Authoritative Source for Software and Firmware | 19 |
3.4.2e | Automated Detection and Remediation of Unauthorized Software | 22 |
3.4.3e | Automated Inventory of System Components | 19 |
3.5.1e | Identification of Systems, Components, and Devices | 20 |
3.5.2e | Password Manager Use | 20 |
3.5.3e | Prohibit Connection of Unknown or Unverified System Components | 21 |
3.6.1e | Establish Security Operations Center (SOC) | 20 |
3.6.2e | Establish and Maintain a Cyber Incident Response Team | 22 |
3.9.1e | Enhanced Personnel Screening | 18 |
3.9.2e | Insider Threat Program | 16 |