Cleaned up Literature folder
This commit is contained in:
parent
73a6380034
commit
fe5eda4e05
586 changed files with 53911 additions and 2475 deletions
|
|
@ -8,5 +8,5 @@ Documentation, tools, practices and self-evaluation tools can be found through [
|
|||

|
||||
|
||||
Related:
|
||||
- [Operational Technology](../../Sparks/Operational%20Technology.md)
|
||||
- [OT Security](../../Information%20Security/OT%20Security.md)
|
||||
- [IEC 62443 Cybersecurity for operational technology in automation and control systems](IEC%2062443%20Cybersecurity%20for%20operational%20technology%20in%20automation%20and%20control%20systems.md)
|
||||
|
|
|
|||
|
|
@ -21,7 +21,7 @@ See also:
|
|||
- [ISO 27k family](../../../../iso27DIY-gis/reference/Examples/ISO%2027k%20family.md)
|
||||
- [ISO_27001_2013_EN_Index](../ISO27x/legacy/ISO%2027001%202013/ISO_27001_2013_EN_Index.md)
|
||||
- [ISO_27001_2017_NL_Index](../ISO27x/legacy/ISO%2027001%202017%20NL/ISO_27001_2017_NL_Index.md)
|
||||
- [ISO_27001_2022_00_MoC Index EXT](../../MoCs/ISO_27001_2022_00_MoC%20Index%20EXT.md)
|
||||
- [ISO_27001_2022_Index EXT](../ISO27x/ISO_27001_2022_Index%20EXT.md)
|
||||
- [ISO_27002_2022_NL_Index](../ISO27x/OST/ISO_27002_2022_NL_Index.md)
|
||||
- [ISO31000-5.4.1-Understanding-the-organization-and-its-context](../ISO27x/ISO31000-5.4.1-Understanding-the-organization-and-its-context.md)
|
||||
- [NEN7510 Risicos](../ISO27x/OST/7510/NEN7510%20Risicos.md)
|
||||
|
|
|
|||
|
|
@ -27,4 +27,4 @@ Laatste retrieval date: 5 februari 2025
|
|||
[CICD-SEC-10](https://owasp.org/www-project-top-10-ci-cd-security-risks/CICD-SEC-10-Insufficient-Logging-And-Visibility): Insufficient Logging and Visibility
|
||||
|
||||
|
||||
related: [Risk management](../../Sparks/Risk%20management.md)
|
||||
related: [Risk management](../../Information%20Security/Risks/Risk%20management.md)
|
||||
|
|
|
|||
|
|
@ -2,9 +2,9 @@
|
|||
[BC_5701_Hoofstukken_Normtekst](../BC%205701/BC_5701_Hoofstukken_Normtekst.md)
|
||||
[NIST Privacy Framework (PF)](../NIST/NIST%20Privacy%20Framework%20(PF).md)
|
||||
|
||||
[Privacy in ISO 27k](../../Literature%20notes/Privacy%20in%20ISO%2027k.md)
|
||||
[Privacy in ISO 27k](../ISO27x/Privacy%20in%20ISO%2027k.md)
|
||||
|
||||
Related:
|
||||
- [Privacy protection in Databases](../../Sparks/Privacy%20protection%20in%20Databases.md)
|
||||
- [Privacy protection in Databases](../../../Content%20Factory/Scratch%20file/Privacy%20protection%20in%20Databases.md)
|
||||
- [ISO 27001 A.18.1.4 Privacy and protection of personally identifiable information](../ISO27x/legacy/ISO%2027001%202013/ISO%2027001%20A.18.1.4%20Privacy%20and%20protection%20of%20personally%20identifiable%20information.md)
|
||||
|
||||
|
|
|
|||
|
|
@ -10,7 +10,7 @@ More detail in Security & Privacy Risk Management Model (SP-RMM) Overview
|
|||
|
||||
|
||||
Related:
|
||||
- [Secure Controls Framework](../../Literature%20notes/Secure%20Controls%20Framework.md)
|
||||
- [Risk analysis](../../Sparks/Risk%20analysis.md)
|
||||
- [Risk inventories](../../Sparks/Risk%20inventories.md)
|
||||
- [Secure Controls Framework](../Secure%20Controls%20Framework.md)
|
||||
- [Risk analysis methods](../../ISMS/Risk%20analysis%20methods.md)
|
||||
- [Risk inventories](../../Information%20Security/Risks/Risk%20inventories.md)
|
||||
|
||||
|
|
|
|||
|
|
@ -6,8 +6,8 @@ https://securecontrolsframework.com/risk-management-model/
|
|||
|
||||
|
||||
Related:
|
||||
- [Secure Controls Framework](../../Literature%20notes/Secure%20Controls%20Framework.md)
|
||||
- [Threat Intelligence](../../Sparks/Threat%20Intelligence.md)
|
||||
- [Secure Controls Framework](../Secure%20Controls%20Framework.md)
|
||||
- [Threat Intelligence](../../Information%20Security/Threat%20Intelligence.md)
|
||||
- [Assets, Vulnerabilities, Threats, Risks](../../Sparks/Assets,%20Vulnerabilities,%20Threats,%20Risks.md)
|
||||
|
||||
|
||||
|
|
|
|||
|
|
@ -1,6 +1,6 @@
|
|||
## Security & Privacy: SP-CMM
|
||||
|
||||
The Security & Privacy Capability Maturity Model (SP-CMM) from the [Secure Controls Framework](../../Literature%20notes/Secure%20Controls%20Framework.md) takes the organizations size into consideration by having different requirements for small, medium and large organizations.
|
||||
The Security & Privacy Capability Maturity Model (SP-CMM) from the [Secure Controls Framework](../Secure%20Controls%20Framework.md) takes the organizations size into consideration by having different requirements for small, medium and large organizations.
|
||||
|
||||
Detailed on page 21 of Secure Controls Framework Overview & Instructions, version 2022.1. ([download link](https://scf.securecontrolsframework.com/SCF_Overview_Recommended_Practices.pdf))
|
||||
|
||||
|
|
|
|||
|
|
@ -1,6 +1,6 @@
|
|||
[ISO 27k family](../../../../iso27DIY-gis/reference/Examples/ISO%2027k%20family.md)
|
||||
[ISO_27001_2013_EN_Index](../ISO27x/legacy/ISO%2027001%202013/ISO_27001_2013_EN_Index.md)
|
||||
[ISO_27001_2022_00_MoC Index EXT](../../MoCs/ISO_27001_2022_00_MoC%20Index%20EXT.md)
|
||||
[ISO_27001_2022_Index EXT](../ISO27x/ISO_27001_2022_Index%20EXT.md)
|
||||
[IEC 62443 Cybersecurity for operational technology in automation and control systems](IEC%2062443%20Cybersecurity%20for%20operational%20technology%20in%20automation%20and%20control%20systems.md)
|
||||
|
||||
**EU regulations:**
|
||||
|
|
@ -23,7 +23,7 @@ Not really a standard or regulation, but excellent nonetheless, the UK's [NCSC
|
|||
The NCSC’s Board Toolkit helps boards to ensure that cyber resilience and risk management are embedded throughout an organisation, including its people, systems, processes and technologies.
|
||||
|
||||
## Cross references
|
||||
- [Secure Controls Framework](../../Literature%20notes/Secure%20Controls%20Framework.md) brings a lot of those together, see their Secure Controls Framework (SCF) - 2022.1 matrix.xslx.
|
||||
- [Mapping NIST Controls to ISO Standards](../../Literature%20notes/Mapping%20NIST%20Controls%20to%20ISO%20Standards.md)
|
||||
- [Secure Controls Framework](../Secure%20Controls%20Framework.md) brings a lot of those together, see their Secure Controls Framework (SCF) - 2022.1 matrix.xslx.
|
||||
- [Mapping NIST Controls to ISO Standards](../Mapping%20NIST%20Controls%20to%20ISO%20Standards.md)
|
||||
|
||||
[CSA Cloud Controls Matrix](CSA%20Cloud%20Controls%20Matrix.md)
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue