logo

Building a Reasonable Cyber Defense Program

ID: 20f5c0a2-78fa-5ba8-bfa0-54e28301a536

STIX ID: report--20f5c0a2-78fa-5ba8-bfa0-54e28301a536

Feed Name: CISecurity.org Insights Blog

Date Published: 2024-09-11

Date Updated: 2026-04-19

...
...

This blog outlines a seven-step checklist to help organizations meet U.S. ‘reasonable’ cybersecurity expectations: understand mission and obligations; develop a cybersecurity program with defined roles, policies, and training; identify resources; adopt industry frameworks like the CIS Controls and CIS Benchmarks; measure conformance using CIS CSAT Pro and CIS-CAT Pro within CIS SecureSuite; conduct quantitative risk assessments with CIS RAM; and perform periodic independent assessments. It highlights CIS SecureSuite (including the new unified platform), CIS WorkBench, and related tools as enablers to automate hardening, track progress, and sustain continuous improvement.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.