CIS Critical Security Controls V.8 - Center for Internet Security

The CIS Critical Security Controls (CIS Controls) are a prioritized set of Safeguards to mitigate the most prevalent cyber-attacks against systems and networks. They are mapped to and referenced by multiple legal, regulatory, and policy frameworks. CIS Controls v8 has been enhanced to keep up with modern systems and software. Movement to cloud-based computing, virtualization, mobility, outsourcing, Work-from-Home, and changing attacker tactics prompted the update and supports an enterprise’s security as they move to both fully cloud and hybrid environments.


Why is CIS v.8 important?

CIS Critical Security Controls v8 offers prescriptive, prioritized, and simplified cybersecurity best practices that provide a clear path to improve an organization's cyber defense program.

The SANS Institute and the FBI started the CIS Controls as the Top 20 Critical Controls in 2001. Over the years it evolved to the popular SANS Top 20. In 2015, the effort of maintaining and improving the guidelines was transferred to the Center for Internet Security. The name changed to the CIS Critical Security Controls and was eventually shortened to “CIS Controls.”

A benefit of the CIS Controls is that the 18 controls and their safeguards can be filtered by Implementation Groups (IG) that are correlated by priority. In other words, you should implement all the controls and safeguards in IG1 if you are interested in minimum basic cyber hygiene and then you can build on IG1 and get to IG2 and IG3 to develop a more comprehensive security posture. This system really helps you know where to start instead of working from the top of the list down. 

How THarWi Can Help

Our qualified experts understand the impact cybersecurity requirements have on your data collection, transmission, and handling procedures. THarWi brings years of experience within the healthcare sector to your organization.

Failure to comply with relevant requirements can have a devastating impact on your organization. Don't take chances - let our experts help! THarWi has a variety of services that you can leverage to meet your CIS security control reporting needs.


18 Domains Assessed