unified
UC-ASSET-09 — Receive, analyze, and act on threat and vulnerability intelligence
Receive cyber threat intelligence from information-sharing forums and other sources, and identify and record internal and external threats to the organization. Operate a documented channel to receive, analyze, and respond to vulnerability disclosures from internal and external reporters. Track intelligence and disclosures to closure and feed the results into risk assessment and remediation.
Record JSON · Open in map · Data retrieval guide
Catalog revision: 24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028. A connection does not establish full coverage.
Attributes
- domain
- Vulnerability & Patch Management
- type
- detective
- category
- administrative
Details
- unified_id
- UC-ASSET-09
- title
- Receive, analyze, and act on threat and vulnerability intelligence
- statement
- Receive cyber threat intelligence from information-sharing forums and other sources, and identify and record internal and external threats to the organization. Operate a documented channel to receive, analyze, and respond to vulnerability disclosures from internal and external reporters. Track intelligence and disclosures to closure and feed the results into risk assessment and remediation.
- domain
- Vulnerability & Patch Management
- control_type
- detective
- control_category
- administrative
- members
- framework
- nist-csf-2
- control_id
- ID.RA-02
- coverage
- full
- relationship
- superset_of
- framework
- nist-csf-2
- control_id
- ID.RA-03
- coverage
- full
- relationship
- superset_of
- framework
- nist-csf-2
- control_id
- ID.RA-08
- coverage
- full
- relationship
- superset_of
- guidance
Source
No record-specific source URL is provided.
Connections
- UC-ASSET-09 — Receive, analyze, and act on threat and vulnerability intelligence mitigates Zero-day exploitation
- strength
- related
- rationale
- Threat-intel feeds give early IOC/TTP warning of novel exploits, enabling detection before any signature or patch exists.
- UC-ASSET-09 — Receive, analyze, and act on threat and vulnerability intelligence mitigates Inadequate vulnerability scanning and pre-release testing
- strength
- related
- rationale
- A coordinated external vulnerability-disclosure channel surfaces exploitable defects that inadequate internal testing missed.
- UC-ASSET-09 — Receive, analyze, and act on threat and vulnerability intelligence mitigates Malware delivery, insertion and compromise of systems
- strength
- related
- rationale
- Malware IOCs received via threat intelligence enable detection and blocking of active campaigns.
- Vulnerability & Patch Management Cycle operates UC-ASSET-09 — Receive, analyze, and act on threat and vulnerability intelligence
- ISO 27001 SoA Review & Controls Assessment oversees UC-ASSET-09 — Receive, analyze, and act on threat and vulnerability intelligence
- UC-ASSET-09 — Receive, analyze, and act on threat and vulnerability intelligence mitigates Exploitation of known, unpatched vulnerabilities
- strength
- related
- rationale
- Vulnerability-disclosure/advisory intake surfaces known flaws and feeds remediation, but scanning and patching are the operative defenses against unpatched-CVE exploitation.
- UC-ASSET-09 — Receive, analyze, and act on threat and vulnerability intelligence maps_to ID.RA-02 — Risk Assessment: Cyber threat intelligence is received from information sharing forums and sources
- framework
- nist-csf-2
- control_id
- ID.RA-02
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- 2.0
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- UC-ASSET-09 — Receive, analyze, and act on threat and vulnerability intelligence maps_to ID.RA-03 — Risk Assessment: Internal and external threats to the organization are identified and recorded
- framework
- nist-csf-2
- control_id
- ID.RA-03
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- 2.0
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- UC-ASSET-09 — Receive, analyze, and act on threat and vulnerability intelligence maps_to ID.RA-08 — Risk Assessment: Processes for receiving, analyzing, and responding to vulnerability disclosures are established
- framework
- nist-csf-2
- control_id
- ID.RA-08
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- 2.0
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.