CSC V8 control 8.8 – Collect Command-Line Audit Logs Overview CSC V8 control 8.8 recommends that organisations “Collect command-line audit logs. Example implementations include collecting audit logs from PowerShell,...
CSC V8 control 7.1 – Establish and Maintain a Vulnerability Management Process Overview CSC V8 control 7.1 recommends that organisations “Establish and maintain a documented vulnerability management process for enterprise assets. Review...
CSC V8 control 8.9 – Centralize Audit Logs Overview CSC V8 control 8.9 recommends that organisations “Centralize, to the extent possible, audit log collection and retention across enterprise...
CSC V8 control 7.2 – Establish and Maintain a Remediation Process Overview CSC V8 control 7.2 recommends that organisations “Establish and maintain a risk-based remediation strategy documented in a remediation process,...
CSC V8 control 8.10 – Retain Audit Logs Overview CSC V8 control 8.10 recommends that organisations “Retain audit logs across enterprise assets for a minimum of 90 days.”....
CSC V8 control 7.3 – Perform Automated Operating System Patch Management Overview CSC V8 control 7.3 recommends that organisations “Perform operating system updates on enterprise assets through automated patch management on...
CSC V8 control 8.11 – Conduct Audit Log Reviews Overview CSC V8 control 8.11 recommends that organisations “Conduct reviews of audit logs to detect anomalies or abnormal events that...
CSC V8 control 7.4 – Perform Automated Application Patch Management Overview CSC V8 control 7.4 recommends that organisations “Perform application updates on enterprise assets through automated patch management on a...
CSC V8 control 8.12 – Collect Service Provider Logs Overview CSC V8 control 8.12 recommends that organisations “Collect service provider logs, where supported. Example implementations include collecting authentication and...
CSC V8 control 9 – Email and Web Browser Protections Overview CSC V8 control 9 recommends that organisations “Improve protections and detections of threats from email and web vectors, as...