Pregled bibliografske jedinice broj: 1157254
A Critical View on CIS Controls
A Critical View on CIS Controls // 2021 16th International Conference on Telecommunications (ConTEL)
Zagreb, Hrvatska, 2021. str. 122-128 doi:10.23919/ConTEL52528.2021.9495982 (predavanje, međunarodna recenzija, cjeloviti rad (in extenso), znanstveni)
CROSBI ID: 1157254 Za ispravke kontaktirajte CROSBI podršku putem web obrasca
Naslov
A Critical View on CIS Controls
Autori
Groš, Stjepan
Vrsta, podvrsta i kategorija rada
Radovi u zbornicima skupova, cjeloviti rad (in extenso), znanstveni
Izvornik
2021 16th International Conference on Telecommunications (ConTEL)
/ - , 2021, 122-128
Skup
16th International Conference on Telecommunications (ConTEL 2021)
Mjesto i datum
Zagreb, Hrvatska, 30.06.2021. - 02.07.2021
Vrsta sudjelovanja
Predavanje
Vrsta recenzije
Međunarodna recenzija
Ključne riječi
cis controls ; risk assessment
Sažetak
CIS Controls is a set of 20 controls and 171 sub-controls that were created with an idea of having a list of something to implement so that organizations can increase their security. While good in theory, it is a big question of how viable this approach is in practice, and does it really help. There is only a minor number of critical views of CIS Controls and since CIS Controls are marketed by two very influential organizations they are very popular. Yet, there are alternatives published by ISO, NIST and even PCI consortium. In this paper we critically assess CIS Controls, assumptions on which they are based as well as validity of approach and claims made in its favor. The conclusion is that scientific community should be more active regarding this topic, but also that more material is necessary. This is something that CIS and SANS should support if they want to make CIS Controls viable alternative to other approaches.
Izvorni jezik
Engleski
Znanstvena područja
Računarstvo
POVEZANOST RADA
Ustanove:
Fakultet elektrotehnike i računarstva, Zagreb
Profili:
Stjepan Groš
(autor)