IM8-AWR | Security Awareness and Training | 0 |
IM8-BCM | Business Continuity and Disaster Recovery | 0 |
IM8-CLD | Use of Cloud Services and Government-on-Commercial-Cloud | 0 |
IM8-CLD.1 | Cloud Adoption Governance | 0 |
IM8-CLD.2 | Cloud Security Controls | 117 |
IM8-CLD.3 | Cloud Service Provider Assessment | 0 |
IM8-CLD.4 | Cloud Data Sovereignty | 51 |
IM8-CLF | Data Classification and Handling | 0 |
IM8-CON | Contractor Compliance and Flow-Down | 0 |
IM8-DAT.1 | Data Classification | 43 |
IM8-DAT.2 | Data Protection | 129 |
IM8-DAT.3 | Data Sharing and Transfer | 56 |
IM8-DAT.4 | Data Retention and Disposal | 92 |
IM8-DEC | Decommissioning and Data Disposal | 0 |
IM8-DEV | Secure Software Development for Government Systems | 0 |
IM8-DLP | Protection of Government Data Across Channels | 0 |
IM8-DPP | Data Protection and Privacy by Design for Government Services | 0 |
IM8-DSS.1 | User-Centric Design | 0 |
IM8-DSS.2 | Service Reliability Standards | 45 |
IM8-DSS.3 | Secure Development Practices | 53 |
IM8-IAM | Identity, Authentication, and Privileged Access | 0 |
IM8-IR | Cyber Incident Response and Reporting to GovTech | 0 |
IM8-LOG | Logging, Monitoring, and Audit Trail | 0 |
IM8-PATCH | Patching and Vulnerability Remediation | 0 |
IM8-RA | Risk Assessment for ICT and SS Initiatives | 0 |
IM8-RES.1 | Business Continuity Planning | 27 |
IM8-RES.2 | Disaster Recovery | 166 |
IM8-RES.3 | Incident Response | 112 |
IM8-RES.4 | Resilience Testing | 100 |
IM8-SCM | Supply Chain and Vendor Management | 0 |
IM8-SEC.1 | Security Architecture Design | 0 |
IM8-SEC.2 | Access Control | 126 |
IM8-SEC.3 | Network Security | 76 |
IM8-SEC.4 | Vulnerability Management | 158 |
IM8-TPM.1 | Vendor Security Assessment | 0 |
IM8-TPM.2 | Contractual Security Requirements | 0 |
IM8-TPM.3 | Third-Party Monitoring | 0 |
IM8-TPM.4 | Supply Chain Risk Management | 107 |
IM8-VAPT | Vulnerability Assessment and Penetration Testing | 0 |
SGIMEIGHT-1 | Governance, Audit, Independent Assurance | 0 |
SGIMEIGHT-2 | Information Security, Classification, Access | 0 |
SGIMEIGHT-3 | AI and Algorithmic System Governance | 0 |
SGIMEIGHT-4 | Cloud, Data, Procurement, Outsourcing | 0 |
SGIMEIGHT-5 | Incident Response and Continuity | 0 |