← all publishers

cyberstrikeus

@cyberstrikeus source repo

7171 published skills · page 42 of 72

  1. Sr 2 Supply Chain Risk Management Plan · cyberstrikeus
    Develop a plan for managing supply chain risks associated with the research and development, design, manufacturing, acquisition, delivery, integrat...
    0 installs
  2. Cis K8S V200 2 1 · cyberstrikeus
    Ensure that the --cert-file and --key-file arguments are set as appropriate (Automated)
    0 installs
  3. Cis K8S V200 2 2 · cyberstrikeus
    Ensure that the --client-cert-auth argument is set to true (Automated)
    0 installs
  4. Cis K8S V200 2 3 · cyberstrikeus
    Ensure that the --auto-tls argument is not set to true (Automated)
    0 installs
  5. Cis K8S V200 2 4 · cyberstrikeus
    Ensure that the --peer-cert-file and --peer-key-file arguments are set as appropriate (Automated)
    0 installs
  6. Cis K8S V200 2 5 · cyberstrikeus
    Ensure that the --peer-client-cert-auth argument is set to true (Automated)
    0 installs
  7. Cis K8S V200 2 6 · cyberstrikeus
    Ensure that the --peer-auto-tls argument is not set to true (Automated)
    0 installs
  8. Cis K8S V200 2 7 · cyberstrikeus
    Ensure that a unique Certificate Authority is used for etcd (Manual)
    0 installs
  9. Cis Ocp V160 2 1 · cyberstrikeus
    Ensure that the --cert-file and --key-file arguments are set as appropriate (Manual)
    0 installs
  10. Cis Ocp V160 2 2 · cyberstrikeus
    Ensure that the --client-cert-auth argument is set to true (Manual)
    0 installs
  11. Cis Ocp V160 2 3 · cyberstrikeus
    Ensure that the --auto-tls argument is not set to true (Manual)
    0 installs
  12. Cis Ocp V160 2 4 · cyberstrikeus
    Ensure that the --peer-cert-file and --peer-key-file arguments are set as appropriate (Manual)
    0 installs
  13. Cis Ocp V160 2 5 · cyberstrikeus
    Ensure that the --peer-client-cert-auth argument is set to true (Manual)
    0 installs
  14. Cis Ocp V160 2 6 · cyberstrikeus
    Ensure that the --peer-auto-tls argument is not set to true (Manual)
    0 installs
  15. Cis Ocp V160 2 7 · cyberstrikeus
    Ensure that a unique Certificate Authority is used for etcd (Manual)
    0 installs
  16. Information In Shared System Resources 03 13 04 Information · cyberstrikeus
    Information in Shared System Resources
    0 installs
  17. Network Communications Deny By Default Allow By Exception 03 · cyberstrikeus
    Network Communications – Deny by Default – Allow by Exception
    0 installs
  18. Access Restrictions For Change 03 04 05 Access Restrictions · cyberstrikeus
    Access Restrictions for Change
    0 installs
  19. Identifier Management 03 05 05 Identifier Management · cyberstrikeus
    Receive authorization from organizational personnel or roles to assign an individual, group, role, service, or device identifier.
    0 installs
  20. Information Exchange 03 12 05 Information Exchange · cyberstrikeus
    Approve and manage the exchange of CUI between the system and other systems using [organization-defined].
    0 installs
  21. Configure The Compilation Interpreter And Build Processes To · cyberstrikeus
    Decrease the number of security vulnerabilities in the software and reduce costs by eliminating vulnerabilities before testing occurs.
    0 installs
  22. Ca 2 3 Leveraging Results From External Organizations · cyberstrikeus
    Leverage the results of control assessments performed by [organization-defined] on [organization-defined] when the assessment meets [organization-defi
    0 installs
  23. Ia 2 6 Access To Accounts Separate Device · cyberstrikeus
    Implement multi-factor authentication for [organization-defined] access to [organization-defined] such that: One of the factors is provided by a devic
    0 installs
  24. Ia 3 1 Cryptographic Bidirectional Authentication · cyberstrikeus
    Authenticate [organization-defined] before establishing [organization-defined] connection using bidirectional authentication that is cryptographically
    0 installs
  25. Ia 3 2 Cryptographic Bidirectional Network Authentication · cyberstrikeus
    Cryptographic Bidirectional Network Authentication
    0 installs
  26. Ia 3 3 Dynamic Address Allocation · cyberstrikeus
    Where addresses are allocated dynamically, standardize dynamic address allocation lease information and the lease duration assigned to devices in a...
    0 installs
  27. Pe 5 3 Marking Output Devices · cyberstrikeus
    Marking Output Devices
    0 installs
  28. Sa 12 1 Acquisition Strategies Tools Methods · cyberstrikeus
    Acquisition Strategies / Tools / Methods
    0 installs
  29. Sa 12 10 Validate As Genuine And Not Altered · cyberstrikeus
    Validate as Genuine and Not Altered
    0 installs
  30. Sa 12 13 Critical Information System Components · cyberstrikeus
    Critical Information System Components
    0 installs
  31. Sa 12 6 Minimizing Procurement Time · cyberstrikeus
    Minimizing Procurement Time
    0 installs
  32. Sa 17 Developer Security And Privacy Architecture And Design · cyberstrikeus
    Require the developer of the system, system component, or system service to produce a design specification and security and privacy architecture that:
    0 installs
  33. Sa 4 9 Functions Ports Protocols And Services In Use · cyberstrikeus
    Require the developer of the system, system component, or system service to identify the functions, ports, protocols, and services intended for organi
    0 installs
  34. Sa 8 13 Minimized Security Elements · cyberstrikeus
    Implement the security design principle of minimized security elements in [organization-defined].
    0 installs
  35. Sa 8 24 Secure Failure And Recovery · cyberstrikeus
    Implement the security design principle of secure failure and recovery in [organization-defined].
    0 installs
  36. Sc 14 Public Access Protections · cyberstrikeus
    Public Access Protections
    0 installs
  37. Sc 16 1 Integrity Verification · cyberstrikeus
    Verify the integrity of transmitted security and privacy attributes.
    0 installs
  38. Sc 17 Public Key Infrastructure Certificates · cyberstrikeus
    Issue public key certificates under an [organization-defined] or obtain public key certificates from an approved service provider;
    0 installs
  39. Sc 18 3 Prevent Downloading And Execution · cyberstrikeus
    Prevent the download and execution of [organization-defined].
    0 installs
  40. Sc 18 5 Allow Execution Only In Confined Environments · cyberstrikeus
    Allow execution of permitted mobile code only in confined virtual machine environments.
    0 installs
  41. Sc 30 4 Misleading Information · cyberstrikeus
    Employ realistic, but misleading information in [organization-defined] about its security state or posture.
    0 installs
  42. Sc 41 Port And Io Device Access · cyberstrikeus
    [organization-defined] disable or remove [organization-defined] on the following systems or system components: [organization-defined].
    0 installs
  43. Sc 42 1 Reporting To Authorized Individuals Or Roles · cyberstrikeus
    Verify that the system is configured so that data or information collected by the [organization-defined] is only reported to authorized individuals or
    0 installs
  44. Sc 51 Hardware Based Protection · cyberstrikeus
    Employ hardware-based, write-protect for [organization-defined] ;
    0 installs
  45. Sc 7 24 Personally Identifiable Information · cyberstrikeus
    For systems that process personally identifiable information: Apply the following processing rules to data elements of personally identifiable informa
    0 installs
  46. Sc 7 5 Deny By Default Allow By Exception · cyberstrikeus
    Deny network communications traffic by default and allow network communications traffic by exception [organization-defined].
    0 installs
  47. Si 10 1 Manual Override Capability · cyberstrikeus
    Provide a manual override capability for input validation of the following information inputs: [organization-defined];
    0 installs
  48. Si 14 2 Non Persistent Information · cyberstrikeus
    [organization-defined] ;
    0 installs
  49. Si 4 3 Automated Tool And Mechanism Integration · cyberstrikeus
    Employ automated tools and mechanisms to integrate intrusion detection tools and mechanisms into access control and flow control mechanisms.
    0 installs
  50. Si 5 Security Alerts Advisories And Directives · cyberstrikeus
    Receive system security alerts, advisories, and directives from [organization-defined] on an ongoing basis;
    0 installs
  51. Si 6 3 Report Verification Results · cyberstrikeus
    Report the results of security and privacy function verification to [organization-defined].
    0 installs
  52. Si 7 13 Code Execution In Protected Environments · cyberstrikeus
    Code Execution in Protected Environments
    0 installs
  53. Si 7 7 Integration Of Detection And Response · cyberstrikeus
    Incorporate the detection of the following unauthorized changes into the organizational incident response capability: [organization-defined].
    0 installs
  54. Si 9 Information Input Restrictions · cyberstrikeus
    Information Input Restrictions
    0 installs
  55. Sr 4 4 Supply Chain Integrity Pedigree · cyberstrikeus
    Employ [organization-defined] and conduct [organization-defined] to ensure the integrity of the system and system components by validating the interna
    0 installs
  56. Impact Analyses 03 04 04 Impact Analyses · cyberstrikeus
    Analyze changes to the system to determine potential security impacts prior to change implementation.
    0 installs
  57. Continuous Monitoring 03 12 03 Continuous Monitoring · cyberstrikeus
    Continuous Monitoring
    0 installs
  58. External System Services 03 16 03 External System Services · cyberstrikeus
    Require the providers of external system services used for the processing, storage, or transmission of CUI to comply with the following security re...
    0 installs
  59. Ca 3 7 Transitive Information Exchanges · cyberstrikeus
    Identify transitive (downstream) information exchanges with other systems through the systems identified in [CA-3a](#ca-3_smt.a) ;
    0 installs
  60. Ca 7 6 Automation Support For Monitoring · cyberstrikeus
    Ensure the accuracy, currency, and availability of monitoring results for the system using [organization-defined].
    0 installs
  61. Ia 2 13 Out Of Band Authentication · cyberstrikeus
    Implement the following out-of-band authentication mechanisms under [organization-defined]: [organization-defined].
    0 installs
  62. Ia 5 10 Dynamic Credential Binding · cyberstrikeus
    Bind identities and authenticators dynamically using the following rules: [organization-defined].
    0 installs
  63. Pe 6 Monitoring Physical Access · cyberstrikeus
    Monitor physical access to the facility where the system resides to detect and respond to physical security incidents;
    0 installs
  64. Pe 8 2 Physical Access Records · cyberstrikeus
    Physical Access Records
    0 installs
  65. Sa 10 5 Mapping Integrity For Version Control · cyberstrikeus
    Require the developer of the system, system component, or system service to maintain the integrity of the mapping between the master build data descri
    0 installs
  66. Sa 12 11 Penetration Testing Analysis Of Elements Processes · cyberstrikeus
    Penetration Testing / Analysis of Elements, Processes, and Actors
    0 installs
  67. Sa 15 2 Security And Privacy Tracking Tools · cyberstrikeus
    Require the developer of the system, system component, or system service to select and employ security and privacy tracking tools for use during the d
    0 installs
  68. Sa 15 11 Archive System Or Component · cyberstrikeus
    Require the developer of the system or system component to archive the system or component to be released or delivered together with the corresponding
    0 installs
  69. Sa 17 2 Security Relevant Components · cyberstrikeus
    Require the developer of the system, system component, or system service to: Define security-relevant hardware, software, and firmware; and Provide a
    0 installs
  70. Sa 18 Tamper Resistance And Detection · cyberstrikeus
    Tamper Resistance and Detection
    0 installs
  71. Sa 4 3 Development Methods Techniques And Practices · cyberstrikeus
    Require the developer of the system, system component, or system service to demonstrate the use of a system development life cycle process that includ
    0 installs
  72. Sa 4 8 Continuous Monitoring Plan For Controls · cyberstrikeus
    Require the developer of the system, system component, or system service to produce a plan for continuous monitoring of control effectiveness that is
    0 installs
  73. Sa 4 10 Use Of Approved Piv Products · cyberstrikeus
    Employ only information technology products on the FIPS 201-approved products list for Personal Identity Verification (PIV) capability implemented wit
    0 installs
  74. Sa 8 Security And Privacy Engineering Principles · cyberstrikeus
    Apply the following systems security and privacy engineering principles in the specification, design, development, implementation, and modification of
    0 installs
  75. Sa 8 16 Self Reliant Trustworthiness · cyberstrikeus
    Implement the security design principle of self-reliant trustworthiness in [organization-defined].
    0 installs
  76. Sa 9 5 Processing Storage And Service Location · cyberstrikeus
    Restrict the location of [organization-defined] to [organization-defined] based on [organization-defined].
    0 installs
  77. Sc 3 Security Function Isolation · cyberstrikeus
    Isolate security functions from nonsecurity functions.
    0 installs
  78. Sc 31 1 Test Covert Channels For Exploitability · cyberstrikeus
    Test a subset of the identified covert channels to determine the channels that are exploitable.
    0 installs
  79. Sc 42 Sensor Capability And Data · cyberstrikeus
    Prohibit [organization-defined] ;
    0 installs
  80. Sc 42 3 Prohibit Use Of Devices · cyberstrikeus
    Prohibit Use of Devices
    0 installs
  81. Sc 42 5 Collection Minimization · cyberstrikeus
    Employ [organization-defined] that are configured to minimize the collection of information about individuals that is not needed.
    0 installs
  82. Sc 5 3 Detection And Monitoring · cyberstrikeus
    Employ the following monitoring tools to detect indicators of denial-of-service attacks against, or launched from, the system: [organization-define...
    0 installs
  83. Sc 7 17 Automated Enforcement Of Protocol Formats · cyberstrikeus
    Enforce adherence to protocol formats.
    0 installs
  84. Sc 8 2 Pre And Post Transmission Handling · cyberstrikeus
    Maintain the [organization-defined] of information during preparation for transmission and during reception.
    0 installs
  85. Sc 8 1 Cryptographic Protection · cyberstrikeus
    Implement cryptographic mechanisms to [organization-defined] during transmission.
    0 installs
  86. Si 13 Predictable Failure Prevention · cyberstrikeus
    Determine mean time to failure (MTTF) for the following system components in specific environments of operation: [organization-defined] ;
    0 installs
  87. Si 14 3 Non Persistent Connectivity · cyberstrikeus
    Establish connections to the system on demand and terminate connections after [organization-defined].
    0 installs
  88. Si 3 7 Nonsignature Based Detection · cyberstrikeus
    Nonsignature-based Detection
    0 installs
  89. Si 3 8 Detect Unauthorized Commands · cyberstrikeus
    Detect the following unauthorized operating system commands through the kernel application programming interface on [organization-defined]: [organi...
    0 installs
  90. Si 3 9 Authenticate Remote Commands · cyberstrikeus
    Authenticate Remote Commands
    0 installs
  91. Si 7 14 Binary Or Machine Executable Code · cyberstrikeus
    Binary or Machine Executable Code
    0 installs
  92. Si 7 10 Protection Of Boot Firmware · cyberstrikeus
    Implement the following mechanisms to protect the integrity of boot firmware in [organization-defined]: [organization-defined].
    0 installs
  93. Sr 3 Supply Chain Controls And Processes · cyberstrikeus
    Establish a process or processes to identify and address weaknesses or deficiencies in the supply chain elements and processes of [organization-def...
    0 installs
  94. Cis Bind V100 1 1 · cyberstrikeus
    Use a Split-Horizon Architecture (Manual)
    0 installs
  95. Cis Bind V100 1 2 · cyberstrikeus
    Do Not Install a Multi-Use System (Manual)
    0 installs
  96. Cis Bind V100 1 3 · cyberstrikeus
    Dedicated Name Server Role (Automated)
    0 installs
  97. Cis Bind V100 1 4 · cyberstrikeus
    Use Secure Upstream Caching DNS Servers (Manual)
    0 installs
  98. Cis Bind V100 1 5 · cyberstrikeus
    Installing ISC BIND 9 (Automated)
    0 installs
  99. Cis Bind V100 2 1 · cyberstrikeus
    Run BIND as a non-root User (Automated)
    0 installs
  100. Cis Bind V100 2 2 · cyberstrikeus
    Give the BIND User Account an Invalid Shell (Automated)
    0 installs