Skip to content

Keyboard shortcuts

Go

  • Scope — the control cataloggm
  • Plan — your last certification classgp
  • Collect — the recipe indexgc
  • The control you are workinggw
  • Startgh

Move

  • Next rowj
  • Previous rowk
  • Previous in this run[
  • Next in this run]
  • Filter this page's list/
  • Search everythingK

Act

  • Copy this page's permalinky
  • Toggle dark moded
  • This sheet?

Rows are whatever the current page lists — controls on Scope, recipes on Plan and Collect.

CED — Cybersecurity Education

1 indicators, 9 controls in scope for class D; 0 of them have an authored recipe.

Class D vulnerability-response floor

VDR floor1 month

tightest MUST
1 month VDR-TFR-MVF Persistent Machine Verification and Validation for Rev5
tightest overall
1 day VDR-TFR-PSD SHOULD, so it does not bind
A response floor, not a collection interval — why

This is a class-widefloor on responding to a vulnerability, quoted in the dataset’s own units and never converted. It is not a per-check collection interval — the rules author none. Schedule against the MUST; the tightest entry may be a SHOULD.

  • automatable
  • partial — needs judgement
  • narrative — no API proves this

No AWS recipes authored for CED yet — the overlay is written theme by theme, densest first. The indicators below are in scope and collected by hand until a recipe exists.

Indicators in this theme

  • KSI-CED-RAT11 controls
    Reviewing All Training

    The effectiveness of relevant cybersecurity education and training is persistently reviewed, including at least general training for all employees, role-specific training for employees in high risk roles, training for development and engineering staff on secure software delivery, and training for staff involved with incident response or disaster recovery.

No accounts — your progress ticks never leave this browser.