nmfta-repo / nmfta-telematics_security_requirements

Cybersecurity requirements for telematics systems developed in collaboration with motor freight carriers, telematics service providers and cybersecurity experts.
Other
4 stars 3 forks source link

find alternative for CAIQ reference for requirement P-030 #26

Closed jdaoust closed 3 years ago

jdaoust commented 3 years ago

The current reference to CAIQ BCR-01.2 for requirement P-030 refers to the outdated questionnaire CAIQ v3.0.1. The new version (CAIQ v3.1) doesn't seem to contain a direct replacement for the old BCR-01.2 question. Possible replacements include the new BCR-01.2 or other questions from the BCR-01 control.

CAIQ v3.1 can be found attached below. CAIQ_v3.1_Final.xlsx

BenGardiner commented 3 years ago

at the 20210614 meeting this was discussed and it was agreed to use BCR-01.6 and BCR-01.1 as references.