What is CIS?

I want to start this article by introducing you to our good friends at Centro de Seguridad de Internet better known as CIS (Center of internet security). CIS is a forward-thinking nonprofit organization that harnesses the power of a global IT community to protect public and private organizations against cyber threats.

CIS provides us, free of charge, with many information resources such as:

Cybersecurity Best Practices: 

Cybersecurity Tools

 

Controls

In this article we will focus specifically on the 20 critical CIS security controls for effective cyber defense.

The main benefit of these controls is that they prioritize and focus fewer actions with high results. The controls are effective because they are derived from the most common attack patterns highlighted in major threat reports.

 

Why are CIS controls important?

Minimize the risk of:

 

CIS controls help us answer questions such as:

 

20 CIS controls

CIS separates controls into three categories, basic, fundamental and organizational, regardless of industry. These categories and the prioritization of the controls is what makes the CIS controls work so well.

Basic controls (6)

 

Fundamental Controls (10)

 

Organizational controls (4)

 

Now that you are aware of the existing controls and risks… What do I do?

The objective of this article is to provide you with the necessary tools for the implementation of these controls.

Basic Controls

[table id=”2″ /]

Fundamental Controls

[table id=”3″ /]

Organizational Controls

[table id=”4″ /]

Summary:

Security controls are a simple, yet powerful tool that allows industries to prevent cyber-attacks that can be detrimental to their company’s infrastructure.

DO YOU HAVE ANY ADVICE ABOUT CIS CONTROLS? IF SO, FEEL FREE TO LET US KNOW BELOW IN THE COMMENTS.