CHAPTER 3: TECHNICAL CONTROL THEMES
To become certified for either Cyber Essentials or Cyber Essentials Plus, you must implement various security measures, called controls, to ensure the safety of your systems and data. Controls are often technical in nature (e.g. automatic application of new security patches) but can also be based on policy (e.g. a review of user accounts to see they are still necessary) or people (e.g. ensuring staff are educated on what makes a good password).
The controls are designed to provide defences against the basic attack types described previously and are most effective against untargeted or low-skill attacks. Although implementing these controls is a prudent measure and provides a sturdy basic defence, doing so is ...
Get Cyber Essentials - A guide to the Cyber Essentials and Cyber Essentials Plus certifications now with the O’Reilly learning platform.
O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.