Defense agencies list top 20 security controls
A group of U.S. government security organizations has listed the top 20 security actions that they recommend organizations should take to improve computer security.
Called "Twenty Most Important Controls and Metrics for Effective Cyber Defense and Continuous FISMA Compliance," the list was published Monday by a conglomerate of U.S. government agencies, including the NSA, US-CERT, various U.S. Department of Defense computer security groups, and security training organization Sans Institute.
Alan Paller, director of Sans Institute, told CNET News sister site ZDNet UK in an e-mail Friday that the list, also known as the Consensus Audit … Read more