(Back)
Implement increased levels of protection for management interfaces.
IaaS, PaaS, SaaS
Activity | Validation |
---|---|
|
|
Activity | Validation |
---|---|
|
|
- Direction on the Secure Use of Commercial Cloud Services: Security Policy Implementation Notice (SPIN) 2017-01, subsection 6.2.3
- Cyber Centre’s top 10 IT security actions, number 2
- Recommendations for Two-Factor User Authentication Within the Government of Canada Enterprise Domain (accessible only on the Government of Canada network)
- Directive on Service and Digital, Appendix G: Standard on Enterprise Information Technology Service Common Configurations
- Endpoint Management Configuration Requirements
- Guidance on Defence in Depth for Cloud-Based Services (ITSP.50.104), subsection 4.9
AC3, AC-3(7), AC-4, AC-5, AC-6, AC6(5), AC-6(10), AC-19, AC-20(3), IA-2, IA-2(1), IA-2(11), IA-4, IA-5, IA-5(1), SI-4, AU-6, AU-12