logo
logo
Sign in
avatar
CIO Talk Network
CIS Benchmarks

What is your security score? ✓ CIS Controls & CIS Benchmarks tools for companies to assess security posture ✓ Security controls at Maturity & Automation.


What is CIS Benchmarks?

CIS Controls® and CIS Benchmarks tools for companies to assess their security posture. CIS® “is a forward-thinking, non-profit entity that harnesses the power of a global IT community to safeguard private and public organizations against cyber threats.” They created a global security standard and best practices to secure systems and information against “the most pervasive attacks”.


CIS® defines a prioritized list of 20 best practices (i.e., security controls) that help organizations improve cyber defenses. Further they group them into three implementation groups that are relevant for small, medium and large companies. This flexibility is necessary because small and medium companies cannot necessarily afford the costs to implement all possible security controls at the highest level of maturity and automation.


At Encore Electric, Inc., we used the free CIS Controls® Self-Assessment Tool (CSAT) to benchmark our current security posture. We settled on this tool for a couple of reasons. First, we wanted to benchmark our security posture with a numeric score that is simple to understand and communicate to colleagues who have limited knowledge and experience with information security. Second, we wanted a way to demonstrate our level of compliance with particular security frameworks. The CSAT cross-references to other security frameworks such as PCI DSS and NIST 800.




Explore More


collect
0
avatar
CIO Talk Network
guide
Zupyak is the world’s largest content marketing community, with over 400 000 members and 3 million articles. Explore and get your content discovered.
Read more