CIS Control 13: Data Protection Asset Sub- Control Type 13.1 Data Security Function Identify Control Title Maintain an Inventory of Sensitive Information Control Descriptions Maintain an inventory of all sensitive information stored, processed, or transmitted by the organization's technology systems, including those located on-site or at a remote service provider. Implementation Groups 1 2 3

Computer Networking: A Top-Down Approach (7th Edition)
7th Edition
ISBN:9780133594140
Author:James Kurose, Keith Ross
Publisher:James Kurose, Keith Ross
Chapter1: Computer Networks And The Internet
Section: Chapter Questions
Problem R1RQ: What is the difference between a host and an end system? List several different types of end...
icon
Related questions
Question
CIS Control 13: Data Protection
Sub- Asset
Control Type
13.1
Data
Security Control
Function Title
Identify
Control
Descriptions
Maintain an Inventory of Maintain an inventory of all sensitive information
Sensitive Information
stored, processed, or transmitted by the
organization's technology systems, including
those located on-site or at a remote service
provider.
Implementation
Groups
1
2 3
Transcribed Image Text:CIS Control 13: Data Protection Sub- Asset Control Type 13.1 Data Security Control Function Title Identify Control Descriptions Maintain an Inventory of Maintain an inventory of all sensitive information Sensitive Information stored, processed, or transmitted by the organization's technology systems, including those located on-site or at a remote service provider. Implementation Groups 1 2 3
Expert Solution
Step 1

Check CIS 13: Data protection
The aim of this control is to ensure that all data is classified and protected in accordance with established data classifications. To create these data classifications, organizations should create a list of key data types and define the overall importance to the organization. This can be used to create a data classification scheme for an organization. Labels such as "Sensitive", "Commercially Confidential" and "Public" should be used. Information owners must be aware of the classification policy and tools, procedures and controls of said data.

13.1: Maintain an Inventory of Sensitive Information

Tenable.sc supports an MDM integration solution, but the purpose is to detect vulnerabilities on mobile devices. Details of data stored on mobile devices are not recorded in the data received from the MDM solution. Any MDM solution that an organization uses should support the requirement to enable encryption.

Computer Engineering homework question answer, step 1, image 1

 

steps

Step by step

Solved in 2 steps with 2 images

Blurred answer
Recommended textbooks for you
Computer Networking: A Top-Down Approach (7th Edi…
Computer Networking: A Top-Down Approach (7th Edi…
Computer Engineering
ISBN:
9780133594140
Author:
James Kurose, Keith Ross
Publisher:
PEARSON
Computer Organization and Design MIPS Edition, Fi…
Computer Organization and Design MIPS Edition, Fi…
Computer Engineering
ISBN:
9780124077263
Author:
David A. Patterson, John L. Hennessy
Publisher:
Elsevier Science
Network+ Guide to Networks (MindTap Course List)
Network+ Guide to Networks (MindTap Course List)
Computer Engineering
ISBN:
9781337569330
Author:
Jill West, Tamara Dean, Jean Andrews
Publisher:
Cengage Learning
Concepts of Database Management
Concepts of Database Management
Computer Engineering
ISBN:
9781337093422
Author:
Joy L. Starks, Philip J. Pratt, Mary Z. Last
Publisher:
Cengage Learning
Prelude to Programming
Prelude to Programming
Computer Engineering
ISBN:
9780133750423
Author:
VENIT, Stewart
Publisher:
Pearson Education
Sc Business Data Communications and Networking, T…
Sc Business Data Communications and Networking, T…
Computer Engineering
ISBN:
9781119368830
Author:
FITZGERALD
Publisher:
WILEY