SANS Institute
SANS Institute is an official knowledge partner with Edgis to promote cyber security awareness with our clientele which includes 501c charities, non-profit organizations, academic institutions and SMEs.
20 Critical Security Controls
- Inventory of authorised and unauthorised devices
- Inventory of authorised and unauthorised software
- Secure configurations for hardware and software on laptops, workstations, and servers
- Continuous vulnerability assessment and remediation
- Malware defences
- Application software security
- Wireless Device Control
- Data recovery capability
- Security skills assessment and appropriate training to fill gaps
- Secure configurations for network devices such as firewalls, routers, and switches
- Limitation and control of network ports, protocols, and services
- Controlled use of administrative privileges
- Boundary Defence
- Maintenance, monitoring, and analysis of security audit logs
- Controlled access based on the need to know
- Account monitoring and control
- Data loss prevention
- Incident response capability
- Secure network engineering
- Penetration tests and red team exercises
You can find a list of user vetted tools to automate part or all of the controls listed above.





