sara-sabr / ITStrategy

Workspace to develop an IT Strategy - espace de travail pour développer une stratégie TI
https://sara-sabr.github.io/ITStrategy/
MIT License
22 stars 13 forks source link

Investigate ITSG recommended IT Security controls and inheritence #2559

Closed remyb2canada closed 9 months ago

remyb2canada commented 9 months ago

Investigate the ITSG related controls (annexes of ITSG-33) to better understand the inheritance aspect.

i.e. some controls are meant to be department-wide (eg. policy), others architecture foundation (e.g. cloud ops), and others application specific.

This understanding is necessary for the IT Security PoC underway to automate part of the SA&A process.