Content library
CyberFundamentals (Belgium)
ID.BE-4: Dependencies and critical functions for delivery of critical services are established.

How to fill the requirement

CyberFundamentals (Belgium)

ID.BE-4: Dependencies and critical functions for delivery of critical services are established.

Task name
Priority
Status
Theme
Policy
Other requirements
Identifying critical functions and related assets
Critical
High
Normal
Low
Fully done
Mostly done
Partly done
Not done
Risk management and leadership
Continuity management
requirements

Task is fulfilling also these other security requirements

26: Kriittisten toimintojen tunnistaminen
Sec overview
72: Organisaation kriittisten palveluiden tunnistaminen
Sec overview
73: Kriittisten palveluiden riippuvuudet palvelutoimittajista
Sec overview
ASSET-1: Manage IT and OT Asset Inventory
C2M2: MIL1
6.2a: Jatkuvuuden hallinta
Tietoturvasuunnitelma
1. Task description

The organization has a clear process, according to which it identifies the most critical functions in terms of its operations (e.g. services offered to customers), which are subject to the highest continuity requirements.

Items in the IT environment that are necessary for these activities (such as information systems, data reserves, operating processes, partners, units, hardware) are classified as critical.

Critical functions are considered with the highest priority, e.g. in continuity planning, and stricter safety requirements can be applied to them than to other objects in the environment.

Consideration of critical functions in risk management
Critical
High
Normal
Low
Fully done
Mostly done
Partly done
Not done
Risk management and leadership
Risk management
requirements

Task is fulfilling also these other security requirements

74: Kriittisten palveluiden riskien arviointi ja hallinta
Sec overview
ID.BE-4: Dependencies and critical functions for delivery of critical services are established.
CyFun
1. Task description

The organization must identify the functions critical to the continuity of its operations (e.g. services offered to the customer).

Risks related to critical operations should be identified, evaluated and handled with emphasis and regularly in cooperation with service providers.

Multiple providers for critical network equipment
Critical
High
Normal
Low
Fully done
Mostly done
Partly done
Not done
Partner management
Supplier security
requirements

Task is fulfilling also these other security requirements

13.1.2: Security of network services
ISO27 Full
ID.BE-4: Dependencies and critical functions
NIST
ID.BE-5: Resilience requirements
NIST
VAR-08: Vikasietoisuus
Julkri
8.14: Redundancy of information processing facilities
ISO27k1 Full
1. Task description

For example, when the fault tolerance of a telecommunication network is critical, it can be further improved by procuring basic network services through several routes and through several service providers.

No items found.