cyberstrikeus
- 7.2k skills
- 0 followers
- 1 day ago last updated
- ▌ Cp 2 3 Resume Mission And Business Functions · cyberstrikeusPlan for the resumption of [organization-defined] mission and business functions within [organization-defined] of contingency plan activation.
- ▌ Cp 3 2 Mechanisms Used In Training Environments · cyberstrikeusEmploy mechanisms used in operations to provide a more thorough and realistic contingency training environment.
- ▌ Cp 8 5 Alternate Telecommunication Service Testing · cyberstrikeusTest alternate telecommunication services [organization-defined].
- ▌ Cp 9 1 Testing For Reliability And Integrity · cyberstrikeusTest backup information [organization-defined] to verify media reliability and information integrity.
- ▌ Cp 9 6 Redundant Secondary System · cyberstrikeusConduct system backup by maintaining a redundant secondary system that is not collocated with the primary system and that can be activated without los
- ▌ Ir 10 Integrated Information Security Analysis Team · cyberstrikeusIntegrated Information Security Analysis Team
- ▌ Ir 4 5 Automatic Disabling Of System · cyberstrikeusImplement a configurable capability to automatically disable the system if [organization-defined] are detected.
- ▌ Pm 13 Security And Privacy Workforce · cyberstrikeusEstablish a security and privacy workforce development and improvement program.
- ▌ Pm 20 1 Privacy Policies On Websites Applications And Digita · cyberstrikeusDevelop and post privacy policies on all external-facing websites, mobile applications, and other digital services, that: Are written in plain languag
- ▌ Pm 31 Continuous Monitoring Strategy · cyberstrikeusDevelop an organization-wide continuous monitoring strategy and implement continuous monitoring programs that include: Establishing the following orga
- ▌ Ps 3 3 Information Requiring Special Protective Measures · cyberstrikeusVerify that individuals accessing a system processing, storing, or transmitting information requiring special protection: Have valid access authorizat
- ▌ Ps 4 1 Post Employment Requirements · cyberstrikeusNotify terminated individuals of applicable, legally binding post-employment requirements for the protection of organizational information;
- ▌ Ps 6 1 Information Requiring Special Protection · cyberstrikeusInformation Requiring Special Protection
- ▌ Ps 6 3 Post Employment Requirements · cyberstrikeusNotify individuals of applicable, legally binding post-employment requirements for protection of organizational information;
- ▌ Pt 5 Privacy Notice · cyberstrikeusProvide notice to individuals about the processing of personally identifiable information that: Is available to individuals upon first interacting wit
- ▌ Ra 5 10 Correlate Scanning Information · cyberstrikeusCorrelate the output from vulnerability scanning tools to determine the presence of multi-vulnerability and multi-hop attack vectors.
- ▌ Sa 4 12 Data Ownership · cyberstrikeusInclude organizational data ownership requirements in the acquisition contract;
- ▌ Sc 11 Trusted Path · cyberstrikeusProvide a [organization-defined] isolated trusted communications path for communications between the user and the trusted components of the system;
- ▌ Si 4 System Monitoring · cyberstrikeusMonitor the system to detect: Attacks and indicators of potential attacks in accordance with the following monitoring objectives: [organization-define
- ▌ Sr 1 Policy And Procedures · cyberstrikeusDevelop, document, and disseminate to [organization-defined]: [organization-defined] supply chain risk management policy that: Procedures to facilitat
- ▌ Sr 3 2 Limitation Of Harm · cyberstrikeusEmploy the following controls to limit harm from potential adversaries identifying and targeting the organizational supply chain: [organization-define
- ▌ Sr 3 3 Sub Tier Flow Down · cyberstrikeusEnsure that the controls included in the contracts of prime contractors are also included in the contracts of subcontractors.
- ▌ T0816 Device Restartshutdown · cyberstrikeusAdversaries may forcibly restart or shutdown a device in an ICS environment to disrupt and potentially negatively impact physical processes.
- ▌ T0819 Exploit Public Facing Application · cyberstrikeusAdversaries may leverage weaknesses to exploit internet-facing software for initial access into an industrial network.
- ▌ T1474 002 Compromise Hardware Supply Chain · cyberstrikeusAdversaries may manipulate hardware components in products prior to receipt by a final consumer for the purpose of data or system compromise.
- ▌ T1474 003 Compromise Software Supply Chain · cyberstrikeusAdversaries may manipulate application software prior to receipt by a final consumer for the purpose of data or system compromise.
- ▌ T1577 Compromise Application Executable · cyberstrikeusAdversaries may modify applications installed on a device to establish persistent access to a victim.
- ▌ T1645 Compromise Client Software Binary · cyberstrikeusAdversaries may modify system software binaries to establish persistent access to devices.
- ▌ T1626 001 Device Administrator Permissions · cyberstrikeusAdversaries may abuse Android’s device administration API to obtain a higher degree of control over the device.
- ▌ T1628 001 Suppress Application Icon · cyberstrikeusA malicious application could suppress its icon from being displayed to the user in the application launcher.
- ▌ T1633 Virtualizationsandbox Evasion · cyberstrikeusAdversaries may employ various means to detect and avoid virtualization and analysis environments.
- ▌ T1481 003 One Way Communication · cyberstrikeusAdversaries may use an existing, legitimate external Web service channel as a means for sending commands to a compromised system without receiving return output.
- ▌ T1548 002 Bypass User Account Control · cyberstrikeusAdversaries may bypass UAC mechanisms to elevate process privileges on system.
- ▌ T1212 Exploitation For Credential Access · cyberstrikeusAdversaries may exploit software vulnerabilities in an attempt to collect credentials.
- ▌ T1568 002 Domain Generation Algorithms · cyberstrikeusAdversaries may make use of Domain Generation Algorithms (DGAs) to dynamically identify a destination domain for command and control traffic rather than relying on a list of static IP addresses or ...
- ▌ T1608 003 Install Digital Certificate · cyberstrikeusAdversaries may install SSL/TLS certificates that can be used during targeting.
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌ Information Flow Enforcement 03 01 03 Information Flow Enfor · cyberstrikeusInformation Flow Enforcement
- ▌ Incident Response Testing 03 06 03 Incident Response Testing · cyberstrikeusIncident Response Testing
- ▌ Physical Access Control 03 10 07 Physical Access Control · cyberstrikeusEnforce physical access authorizations at entry and exit points to the facility where the system resides by: Verifying individual physical access auth
- ▌ Au 13 1 Use Of Automated Tools · cyberstrikeusMonitor open-source information and information sites using [organization-defined].
- ▌ Au 4 Audit Log Storage Capacity · cyberstrikeusAllocate audit log storage capacity to accommodate [organization-defined].
- ▌
- ▌
- ▌
- ▌ Cm 3 6 Cryptography Management · cyberstrikeusEnsure that cryptographic mechanisms used to provide the following controls are under configuration management: [organization-defined].
- ▌ Cm 5 5 Privilege Limitation For Production And Operation · cyberstrikeusLimit privileges to change system components and system-related information within a production or operational environment;
- ▌
- ▌ Cm 8 System Component Inventory · cyberstrikeusDevelop and document an inventory of system components that: Accurately reflects the system; Includes all components within the system; Does not inclu
- ▌ Cp 10 4 Restore Within Time Period · cyberstrikeusProvide the capability to restore system components within [organization-defined] from configuration-controlled and integrity-protected information re
- ▌ Cp 9 4 Protection From Unauthorized Modification · cyberstrikeusProtection from Unauthorized Modification
- ▌ Mp 5 1 Protection Outside Of Controlled Areas · cyberstrikeusProtection Outside of Controlled Areas
- ▌ Pm 14 Testing Training And Monitoring · cyberstrikeusImplement a process for ensuring that organizational plans for conducting security and privacy testing, training, and monitoring activities associated
- ▌ Pm 15 Security And Privacy Groups And Associations · cyberstrikeusEstablish and institutionalize contact with selected groups and associations within the security and privacy communities: To facilitate ongoing securi
- ▌ Pm 19 Privacy Program Leadership Role · cyberstrikeusAppoint a senior agency official for privacy with the authority, mission, accountability, and resources to coordinate, develop, and implement, applica
- ▌ Pm 3 Information Security And Privacy Resources · cyberstrikeusInclude the resources needed to implement the information security and privacy programs in capital planning and investment requests and document al...
- ▌ Pt 2 1 Data Tagging · cyberstrikeusAttach data tags containing [organization-defined] to [organization-defined].
- ▌ Pt 3 1 Data Tagging · cyberstrikeusAttach data tags containing the following purposes to [organization-defined]: [organization-defined].
- ▌ Pt 6 1 Routine Uses · cyberstrikeusReview all routine uses published in the system of records notice at [organization-defined] to ensure continued accuracy, and to ensure that routine u
- ▌
- ▌ Sa 15 1 Quality Metrics · cyberstrikeusRequire the developer of the system, system component, or system service to: Define quality metrics at the beginning of the development process; and P
- ▌ Sa 15 13 Logging Syntax · cyberstrikeusRequire the developer of the system or system component to minimize the use of personally identifiable information in development and test environment
- ▌ Sa 4 Acquisition Process · cyberstrikeusInclude the following requirements, descriptions, and criteria, explicitly or by reference, using [organization-defined] in the acquisition contract f
- ▌
- ▌ Sa 8 14 Least Privilege · cyberstrikeusImplement the security design principle of least privilege in [organization-defined].
- ▌ Sa 8 23 Secure Defaults · cyberstrikeusImplement the security design principle of secure defaults in [organization-defined].
- ▌ Sc 29 Heterogeneity · cyberstrikeusEmploy a diverse set of information technologies for the following system components in the implementation of the system: [organization-defined].
- ▌ Sc 30 2 Randomness · cyberstrikeusEmploy [organization-defined] to introduce randomness into organizational operations and assets.
- ▌ Si 16 Memory Protection · cyberstrikeusImplement the following controls to protect the system memory from unauthorized code execution: [organization-defined].
- ▌ Si 19 De Identification · cyberstrikeusRemove the following elements of personally identifiable information from datasets: [organization-defined] ;
- ▌ Sr 2 1 Establish Scrm Team · cyberstrikeusEstablish a supply chain risk management team consisting of [organization-defined] to lead and support the following SCRM activities: [organization-de
- ▌ Sr 3 1 Diverse Supply Base · cyberstrikeusEmploy a diverse set of sources for the following system components and services: [organization-defined].
- ▌ T0804 Block Reporting Message · cyberstrikeusAdversaries may block or prevent a reporting message from reaching its intended target.
- ▌ T1664 Exploitation For Initial Access · cyberstrikeusAdversaries may exploit software vulnerabilities to gain initial access to a mobile device.
- ▌ T1639 001 Exfiltration Over Unencrypted Non C2 Protocol · cyberstrikeusAdversaries may steal data by exfiltrating it over an un-encrypted network protocol other than that of the existing command and control channel.
- ▌ T1437 Application Layer Protocol · cyberstrikeusAdversaries may communicate using application layer protocols to avoid detection/network filtering by blending in with existing traffic.
- ▌ T1521 001 Symmetric Cryptography · cyberstrikeusAdversaries may employ a known symmetric encryption algorithm to conceal command and control traffic, rather than relying on any inherent protections provided by a communication protocol.
- ▌ T1546 012 Image File Execution Options Injection · cyberstrikeusAdversaries may establish persistence and/or elevate privileges by executing malicious content triggered by Image File Execution Options (IFEO) debuggers.
- ▌ Least Privilege Privileged Accounts 03 01 06 Least Privilege · cyberstrikeusRestrict privileged accounts on the system to [organization-defined]..
- ▌ Remote Access 03 01 12 Remote Access · cyberstrikeusEstablish usage restrictions, configuration requirements, and connection requirements for each type of allowable remote system access.
- ▌
- ▌ Incident Response Training 03 06 04 Incident Response Traini · cyberstrikeusProvide incident response training to system users consistent with assigned roles and responsibilities: Within [organization-defined] of assuming an i
- ▌
- ▌ Vulnerability Monitoring And Scanning 03 11 02 Vulnerability · cyberstrikeusMonitor and scan the system for vulnerabilities [organization-defined] and when new vulnerabilities affecting the system are identified.
- ▌ At 2 5 Advanced Persistent Threat · cyberstrikeusProvide literacy training on the advanced persistent threat.
- ▌ At 3 2 Physical Security Controls · cyberstrikeusProvide [organization-defined] with initial and [organization-defined] training in the employment and operation of physical security controls.
- ▌ Au 13 Monitoring For Information Disclosure · cyberstrikeusMonitor [organization-defined] [organization-defined] for evidence of unauthorized disclosure of organizational information;
- ▌ Au 3 2 Centralized Management Of Planned Audit Record Conten · cyberstrikeusCentralized Management of Planned Audit Record Content
- ▌ Au 5 1 Storage Capacity Warning · cyberstrikeusProvide a warning to [organization-defined] within [organization-defined] when allocated audit log storage volume reaches [organization-defined] of re
- ▌ Au 6 6 Correlation With Physical Monitoring · cyberstrikeusCorrelate information from audit records with information obtained from monitoring physical access to further enhance the ability to identify suspicio
- ▌ Au 9 3 Cryptographic Protection · cyberstrikeusImplement cryptographic mechanisms to protect the integrity of audit information and audit tools.
- ▌
- ▌ Ca 7 5 Consistency Analysis · cyberstrikeusEmploy the following actions to validate that policies are established and implemented controls are operating in a consistent manner: [organization-de
- ▌ Cm 4 2 Verification Of Controls · cyberstrikeusAfter system changes, verify that the impacted controls are implemented correctly, operating as intended, and producing the desired outcome with regar
- ▌ Cm 5 6 Limit Library Privileges · cyberstrikeusLimit privileges to change software resident within software libraries.