11Center for Internet Security (CIS) 18 Controls
In today's rapidly evolving digital landscape, the need for strong cybersecurity measures has never been more critical. Organizations of all sizes and industries face many cyber threats ranging from phishing attacks and malware to sophisticated breaches targeting sensitive data. To combat these risks, the Center for Internet Security (CIS) has developed the CIS Controls—a prioritized set of cybersecurity best practices designed to help organizations defend against common threats. These controls offer a structured, accessible framework for improving cybersecurity, whether a company is just starting its security journey or looking to refine and enhance its defenses.
The CIS Controls are divided into three key Implementation Groups (IGs), allowing organizations to adopt measures based on size, resources, and threat landscape. Implementation Group 1 (IG1) is designed for small businesses or organizations with limited resources, focusing on essential cybersecurity hygiene. Implementation Group 2 (IG2) builds on these basics to address more complex security needs for medium‐sized enterprises. Finally, Implementation Group 3 (IG3) is tailored for large organizations with extensive infrastructure and higher risk exposure, requiring more advanced security controls. By offering this tiered approach, the CIS Controls provide organizations with a scalable framework to grow and evolve alongside their security needs.
At the core of the CIS ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access