Cyver core platform supports the CIS Critical Security Controls (CIS Controls), specifically the current and industry-leading Version 8.1 (previously known as the SANS Top 20).
General Information on the CIS Controls
The CIS Controls originated as a grassroots initiative to identify the most common and important real-world cyber attacks affecting enterprises daily. Led by the Center for Internet Security (CIS), the controls have matured into an international standard developed by a community of experts.
The primary goal is to provide a prioritized set of positive, constructive actions that defenders can take to significantly improve their security posture. The controls help organizations focus their limited resources on the defensive steps that matter most against prevalent attack patterns. They also ensure alignment by being mapped to numerous regulatory and compliance frameworks.
CIS Critical Security Controls (Version 8.1)
The CIS Controls reflect the combined knowledge of global experts across government, industry, and academia. The 18 controls are organized to create a solid foundation for every organization's cyber defense, moving from basic inventory to advanced security operations:
| Code | Control Name |
|---|---|
| 01 | Inventory and Control of Enterprise Assets |
| 02 | Inventory and Control of Software Assets |
| 03 | Data Protection |
| 04 | Secure Configuration of Enterprise Assets and Software |
| 05 | Account Management |
| 06 | Access Control Management |
| 07 | Continuous Vulnerability Management |
| 08 | Audit Log Management |
| 09 | Email and Web Browser Protections |
| 10 | Malware Defenses |
| 11 | Data Recovery |
| 12 | Network Infrastructure Management |
| 13 | Network Monitoring and Defense |
| 14 | Security Awareness and Skills Training |
| 15 | Service Provider Management |
| 16 | Application Software Security |
| 17 | Incident Response Management |
| 18 | Penetration Testing |
Download
You can directly download the latest CIS Critical Security Controls Checklist from our GitHub repository: