Skip to Content
The Cybersecurity Control Playbook
book

The Cybersecurity Control Playbook

by Jason Edwards
April 2025
Intermediate to advanced
544 pages
20h 19m
English
Wiley
Content preview from The Cybersecurity Control Playbook

11Center for Internet Security (CIS) 18 Controls

In today's rapidly evolving digital landscape, the need for strong cybersecurity measures has never been more critical. Organizations of all sizes and industries face many cyber threats ranging from phishing attacks and malware to sophisticated breaches targeting sensitive data. To combat these risks, the Center for Internet Security (CIS) has developed the CIS Controls—a prioritized set of cybersecurity best practices designed to help organizations defend against common threats. These controls offer a structured, accessible framework for improving cybersecurity, whether a company is just starting its security journey or looking to refine and enhance its defenses.

The CIS Controls are divided into three key Implementation Groups (IGs), allowing organizations to adopt measures based on size, resources, and threat landscape. Implementation Group 1 (IG1) is designed for small businesses or organizations with limited resources, focusing on essential cybersecurity hygiene. Implementation Group 2 (IG2) builds on these basics to address more complex security needs for medium‐sized enterprises. Finally, Implementation Group 3 (IG3) is tailored for large organizations with extensive infrastructure and higher risk exposure, requiring more advanced security controls. By offering this tiered approach, the CIS Controls provide organizations with a scalable framework to grow and evolve alongside their security needs.

At the core of the CIS ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.

Read now

Unlock full access

More than 5,000 organizations count on O’Reilly

AirBnbBlueOriginElectronic ArtsHomeDepotNasdaqRakutenTata Consultancy Services

QuotationMarkO’Reilly covers everything we've got, with content to help us build a world-class technology community, upgrade the capabilities and competencies of our teams, and improve overall team performance as well as their engagement.
Julian F.
Head of Cybersecurity
QuotationMarkI wanted to learn C and C++, but it didn't click for me until I picked up an O'Reilly book. When I went on the O’Reilly platform, I was astonished to find all the books there, plus live events and sandboxes so you could play around with the technology.
Addison B.
Field Engineer
QuotationMarkI’ve been on the O’Reilly platform for more than eight years. I use a couple of learning platforms, but I'm on O'Reilly more than anybody else. When you're there, you start learning. I'm never disappointed.
Amir M.
Data Platform Tech Lead
QuotationMarkI'm always learning. So when I got on to O'Reilly, I was like a kid in a candy store. There are playlists. There are answers. There's on-demand training. It's worth its weight in gold, in terms of what it allows me to do.
Mark W.
Embedded Software Engineer

You might also like

Emerging Threats and Countermeasures in Cybersecurity

Emerging Threats and Countermeasures in Cybersecurity

Gulshan Shrivastava, Rudra Pratap Ojha, Shashank Awasthi, Kavita Sharma, Himani Bansal

Publisher Resources

ISBN: 9781394331857