Departmental Dimension
IT Behavior (ITB)
The IT Behavior (ITB) dimension sets the standard for technical custodians. These indicators focus on the rigorous application of patch management, network segmentation, and the systematic control of user account lifecycles.
ITB1Secure Network Management
ITB1.1Secure patch management
- โITB1.1.1Follows a regular patching schedule to ensure that updates are made promptly
- โITB1.1.2Properly tracks and documents patch deployments
- โITB1.1.3Works closely with system owners and admins to ensure that their respective devices are patched in a timely manner
ITB1.2Network segmentation
- โITB1.2.1Identifies and categorizes systems based on sensitivity
- โITB1.2.2Periodically reviews and updates network segmentation policies
- โITB1.2.3Clearly defines and enforces access controls for each network segment
ITB1.3Ensure endpoint security
- โITB1.3.1Implements application whitelisting to allow only authorized applications to run on endpoints
- โITB1.3.2Isolates compromised endpoints from the network in the event of a network breach to prevent malware spread and limit damage
ITB1.4Firewall configuration
- โITB1.4.1Clearly defines and documents firewall policies that align with the organizationโs security requirements
- โITB1.4.2Conducts penetration testing and security assessments to identify and address vulnerabilities in the firewall configuration
- โITB1.4.3Regularly monitors firewall logs to detect and respond to suspicious behavior
ITB2Secure System Administration
ITB2.1User account management
- โITB2.1.1Implements a comprehensive user account lifecycle management process that includes account creation, modification, and timely deactivation when an employee leaves or changes roles
- โITB2.1.2Monitors user account activities to detect suspicious behavior
- โITB2.1.3Implements account lockout policies to protect against brute force attacks
ITB2.2Secure documentation
- โITB2.2.1Uses version control systems to manage changes to documents