I鈥檓 not a vendor, I鈥檓 just curious what experience people have with implementing security control frameworks?
DOD uses DISA STIGs. Else uses CIS benchmarks, or self developed based of NIST CSF?
To what degree is your organization using any of these?
Are they enforced? Monitored?
Using any vendor solutions that don鈥檛 suck?
Does anyone care except you (hopefully 馃槈)
You must log in or # to comment.