Logo

CISOBot - Your AI CISO Assistant

OPS-02

Security Concept Of Operations (CONOPS)

Weight: 9/10
Description

Mechanisms exist to develop a security Concept of Operations (CONOPS), or a similarly-defined plan for achieving cybersecurity objectives, that documents management, operational and technical measures implemented to apply defense-in-depth techniques that is communicated to all appropriate stakeholders.

Control Question

Does the organization develop a security Concept of Operations (CONOPS), or a similarly-defined plan for achieving cybersecurity objectives, that documents management, operational and technical measures implemented to apply defense-in-depth techniques that is communicated to all appropriate stakeholders?

Control Metadata
Domain:

Security Operations

Validation Cadence:

Annual

Have questions about this control?

Ask CISOBot for implementation guidance and best practices