{"catalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","kind":"record","record":{"attributes":{"category":"technical","domain":"Logging, Monitoring & Detection","type":"preventive"},"canonicalUrl":"https://controlsmap.com/?v=1&node=uc%3AUC-BCDR-13","description":"Operate ongoing protection services, including malware defense, network and endpoint security, and security monitoring, so that attacks and disruptions do not compromise service availability or data. Review and tune these services regularly to keep security risk within accepted levels.","details":{"control_category":"technical","control_type":"preventive","domain":"Logging, Monitoring & Detection","guidance":[],"members":[{"control_id":"DSS05","coverage":"partial","delta":"also identity/logical access, physical access, and sensitive-document/output-device controls","framework":"cobit-2019","relationship":"intersects_with"}],"statement":"Operate ongoing protection services, including malware defense, network and endpoint security, and security monitoring, so that attacks and disruptions do not compromise service availability or data. Review and tune these services regularly to keep security risk within accepted levels.","title":"Operate continuous security protection services","unified_id":"UC-BCDR-13"},"id":"uc:UC-BCDR-13","mapUrl":"https://controlsmap.com/?v=1&node=uc%3AUC-BCDR-13","sourceIds":["cobit-2019"],"sourceUrl":null,"title":"UC-BCDR-13 — Operate continuous security protection services","type":"unified"},"relationships":[{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:2e9b78ce4f889888e2f0f94a8c1785ababdf655392b47c414e5f1b1d61d3e482","properties":{},"sourceDetailPath":"/data/v1/records/wf-a1-f09c8201.json","sourceId":"wf:A1","targetDetailPath":"/data/v1/records/uc-uc-bcdr-13-aa7feb8e.json","targetId":"uc:UC-BCDR-13","type":"tests"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:4047da6470cf29342248d3b7ba589cfb2a1618ee80f92230df74801cb3e633b2","properties":{"rationale":"Endpoint/network protection plus security monitoring block malware and lateral movement across multi-stage campaigns.","strength":"primary"},"sourceDetailPath":"/data/v1/records/uc-uc-bcdr-13-aa7feb8e.json","sourceId":"uc:UC-BCDR-13","targetDetailPath":"/data/v1/records/risk-cyber-coordinated-campaign-b5879769.json","targetId":"risk:cyber-coordinated-campaign","type":"mitigates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:93c0a1c96b2343eae8b23018241805b947d88c6e3608b245d2d1da478c416418","properties":{},"sourceDetailPath":"/data/v1/records/wf-c9-75fb1752.json","sourceId":"wf:C9","targetDetailPath":"/data/v1/records/uc-uc-bcdr-13-aa7feb8e.json","targetId":"uc:UC-BCDR-13","type":"tests"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:a7a312b7d87fca167236f898d8c437bbdcc1439402e4fc4bbe3b85a9582e1f32","properties":{"rationale":"Operating malware defense and network/endpoint security is a first-order preventive defense that stops attacks from succeeding.","strength":"primary"},"sourceDetailPath":"/data/v1/records/uc-uc-bcdr-13-aa7feb8e.json","sourceId":"uc:UC-BCDR-13","targetDetailPath":"/data/v1/records/risk-cyber-adversary-threat-sources-fa9e3003.json","targetId":"risk:cyber-adversary-threat-sources","type":"mitigates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:a8cee9dde29a243b600f5ad0128cf7aa74a7d87d1be4519238792fcbf2469e27","properties":{"control_id":"DSS05","coverage":"partial","delta":"also identity/logical access, physical access, and sensitive-document/output-device controls","framework":"cobit-2019","provenance":{"defaultConfidence":"medium","defaultStatus":"active","direction":"canonical_to_source","mapper":"coworkcanvas-compliance-graph","note":"Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.","reviewDate":"2026-09-07"},"relationship":"intersects_with","source_version":"2019"},"sourceDetailPath":"/data/v1/records/uc-uc-bcdr-13-aa7feb8e.json","sourceId":"uc:UC-BCDR-13","targetDetailPath":"/data/v1/records/ctrl-cobit-2019-dss05-80cfe6d8.json","targetId":"ctrl:cobit-2019:DSS05","type":"maps_to"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:c41e24cb892012b34d8ff1c203f483babd8eee9ecdf89442ee0e9f7d125abc30","properties":{"rationale":"Network/perimeter protection limits the scanning and probing adversaries use to map the environment.","strength":"related"},"sourceDetailPath":"/data/v1/records/uc-uc-bcdr-13-aa7feb8e.json","sourceId":"uc:UC-BCDR-13","targetDetailPath":"/data/v1/records/risk-cyber-reconnaissance-3a7a6c33.json","targetId":"risk:cyber-reconnaissance","type":"mitigates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:d11c5a590a6921ffae253d315bf99e37f47b67b5d281af9679a02896f997f162","properties":{},"sourceDetailPath":"/data/v1/records/wf-c53-cbf08eb0.json","sourceId":"wf:C53","targetDetailPath":"/data/v1/records/uc-uc-bcdr-13-aa7feb8e.json","targetId":"uc:UC-BCDR-13","type":"operates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:fc85170dc1902a9c028c0d699d79713d128c8547d3992202428ba1706f80dc7a","properties":{"rationale":"Malware and network defenses directly counter the malware and sniffers adversaries install to locate and exfiltrate data.","strength":"primary"},"sourceDetailPath":"/data/v1/records/uc-uc-bcdr-13-aa7feb8e.json","sourceId":"uc:UC-BCDR-13","targetDetailPath":"/data/v1/records/risk-data-exfiltration-espionage-74803ebc.json","targetId":"risk:data-exfiltration-espionage","type":"mitigates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:ff8172868f3e0d71cf14421ab1843616e336096cf02b0818c48925409417a7ff","properties":{"rationale":"The protection-services bundle includes ongoing security monitoring, contributing baseline monitoring coverage.","strength":"related"},"sourceDetailPath":"/data/v1/records/uc-uc-bcdr-13-aa7feb8e.json","sourceId":"uc:UC-BCDR-13","targetDetailPath":"/data/v1/records/risk-log-no-monitoring-supervision-712fe573.json","targetId":"risk:log-no-monitoring-supervision","type":"mitigates"}],"schemaVersion":1}
