Shifting to a real time security model
When security is compliance-led or reactive, it can miss opportunities to be proactive in real time.
| GL-SEC-02: How do you handle real time responsiveness to security (including national security) threats? |
|---|
-
Do threat modelling and scenario planning to assess and inform business continuity planning, including an incident response plan within your ecosystem, taking into consideration critical infrastructure, outside interference, disaster preparedness, and national resilience.
-
Improvement plan – Use scenario planning, and conduct an AWS security audit to help identify areas to improve.
-
-
Test and document how security threats are detected and disrupted in real time, including the escalation plan and mechanisms to relevant security and intelligence agencies for that jurisdiction.
-
Improvement plan – Run threat scenarios with the organization to identify and document how threats are detected and disrupted in real time with clear lines of accountability. Provide AWS guidance and tools, such as AWS Shield Advanced, and consider an AWS security workshop.
-
-
Document the critical infrastructure considerations, as this is of particular importance for national critical infrastructure.
-
Improvement plan – Support the organization to identify critical dependencies and likely impacts of service disruption.
Note
The operational excellence pillar addresses agile operating models which support this outcome.
-