Risk Assessment and Security Planning for ITSP.10.171
The majority of ITSP.10.171 control families deal with operational security: how you configure systems, manage access, protect data. The Risk ...
From SOC 2 to CPCSC: Extending Your Security Program for Defence Contracts
The question comes up consistently when companies with established security programs look at entering the Canadian defence supply chain: Do we need ...
Physical Security and Personnel Controls Under CPCSC
Every other control family in ITSP.10.171 has a reasonable analogue in the commercial compliance world. Access control maps to SOC 2 CC6. Incident ...