Back

Cyber Security: Asset management

Cyber Security: Asset management

Cyber Security: Asset management

Status: Live
Published: 11/05/2021
Security level: Official
Amended / Internally developed: No
Live on platform: 23/09/21
Retired on platform:
Target Audience: Business / General
Authoring body: National Cyber Security Centre (NCSC)
Grading: no grading applied
Guidance
Abstract

Step 3 from the 10 steps to Cyber Security covers asset management, ensuring you know what data and systems you manage, and what business need they support.

Asset management encompasses the way you can establish and maintain the required knowledge of your assets. Over time, systems generally grow organically, and it can be hard to maintain an understanding of all the assets within your environment. Incidents can occur as the result of not fully understanding an environment, whether it is an unpatched service, an exposed cloud storage account or a mis-classified document. Ensuring you know about all of these assets is a fundamental precursor to being able to understand and address the resulting risks. Understanding when your systems will no longer be supported can help you to better plan for upgrades and replacements, to help avoid running vulnerable legacy systems.

Download attachments:

Asset Management.pdf

Category: Asset Management Security