Verizon’s highly anticipated 2023 Data Breach Investigation Report (DBIR) was released today, unveiling a valuable addition to the report—the mapping of CIS controls to Verizon’s incident classifications. This inclusion provides organizations with an actionable and comprehensive list of controls that directly align with high-impact areas that have historically led to confirmed incidents and breaches.
By mapping the CIS controls to Verizon’s incident classifications, organizations gain a strategic advantage in their auditing and risk assessment processes. This mapping allows businesses to prioritize their security efforts by focusing on controls that address specific incident types and potential vulnerabilities identified in the report.
The CIS controls serve as a starting point for organizations to build out their risk assessments and implement safeguards to protect against system intrusions, social engineering attacks, basic web application attacks, miscellaneous errors, and lost and stolen assets—categories that have proven to be critical factors in previous security incidents.
With the actionable list of CIS controls now incorporated into the DBIR, organizations can proactively assess their security posture by evaluating their controls with the incident classifications outlined by Verizon. This empowers businesses to evaluate and mitigate risks against the evolving threat landscapes, leveraging the valuable insights provided by Verizon’s extensive research and analysis.
Here is the assembled list of CIS controls, categorized based on their incident classifications, as outlined in the 2023 DBIR:
This website uses cookies to improve your experience. We encourage you to accept, but you can opt-out if you wish. AcceptReject
Privacy & Cookies Policy
Privacy Overview
This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.