C5 (Germany)
C5: Operations

C5 (Germany) C5-OPS-05: Protection Against Malware - Implementation

Configure production system components with malware protection as the policy prescribes, and where signature and behaviour based detection software is used, update its detection content at least once every day.

What else in your programme already covers this

This control maps to 52 controls across 28 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.

  • ASD37-06 Email content filtering (Excellent)
  • ASD37-07 Web content filtering (Excellent)
  • ASD37-12 Antivirus software with heuristics (Very Good)
  • ASD37-16 Antivirus software with signatures (Limited)
  • ASD37-29 Host-based IDS/IPS (Very Good)
  • ASD37-30 Endpoint detection and response (Very Good)

CIS Controls v8 · 5 controls

  • CIS-10.1 Deploy and Maintain Anti-Malware Software
  • CIS-10.2 Configure Automatic Anti-Malware Signature Updates
  • CIS-10.6 Centrally Manage Anti-Malware Software
  • CIS-10.7 Use Behavior-Based Anti-Malware Software
  • CIS-9.7 Deploy and Maintain Email Server Anti-Malware Protections

PCI DSS 4.0 · 4 controls

  • 5.2.1 An anti-malware solution(s) is deployed on all system components, except for those system components identified in periodic evaluations per Requirement 5.2.3 that concludes the system components are not at risk from malware
  • 5.2.2 The deployed anti-malware solution(s): • Detects all known types of malware. • Removes, blocks, or contains all known types of malware
  • 5.3.1 The anti-malware solution(s) is kept current via automatic updates
  • 5.3.2 The anti-malware solution(s): • Performs periodic scans and active or real-time scans. OR • Performs continuous behavioral analysis of systems or processes

UK Cyber Essentials · 4 controls

  • CE-MP.1 Anti-Malware Software Deployed
  • CE-MP.2 Anti-Malware Signatures Updated
  • CE-MP.3 Anti-Malware Scans Files on Access and Web Pages
  • CE-MP.4 Application Allowlisting (Alternative)
  • ASBv3-ES-3 Ensure anti-malware software and signatures are updated
  • ES-1 Use Endpoint Detection and Response (EDR)
  • ES-2 Use modern anti-malware software

CMMC 2.0 · 3 controls

FedRAMP High · 2 controls

  • SI-3 Malicious Code Protection
  • SI-4(23) System Monitoring | Host-based Devices. Implement the following host-based monitoring mechanisms at [Assignment: organization-defined system components]: [Assignment: organization-defined host-based monitoring mechanisms]

FedRAMP Moderate · 2 controls

  • SI-3 Malicious Code Protection
  • SI-4(23) System Monitoring | Host-based Devices. Implement the following host-based monitoring mechanisms at [Assignment: organization-defined system components]: [Assignment: organization-defined host-based monitoring mechanisms]
  • NIST-CSF-DE.CM-09 Computing hardware and software, runtime environments, and their data are monitored to find potentially adverse events
  • NIST-CSF-PR.PS-05 Installation and execution of unauthorized software are prevented

NIST SP 800-161 Rev 1 · 2 controls

  • E8-MACRO-ML1 Configure Microsoft Office Macro Settings (ML1)
  • CBPR-PR-32 Detection, prevention and response measures
  • AUCDR-IS-5 Limit, prevent, detect and remove malware

HIPAA Security Rule · 1 control

ISO 27001:2022 · 1 control

  • 8.7 Protection against malware

ISO 27002:2022 · 1 control

  • 8.7 Protection against malware

ISO 27701:2019 · 1 control

  • 6.9.2 Protection from malware

NIS2 Directive · 1 control

  • Art.21.2.g Basic cyber hygiene practices and cybersecurity training
  • SI-3 Malicious Code Protection
  • SI-3 Malicious Code Protection
  • SI-3 Malicious Code Protection

SOC 2 · 1 control

  • SOC2-CC6.8 Controls to prevent or detect unauthorized or malicious software

Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.

Other controls in C5: Operations

You are reading one control. How much of C5 (Germany) have you already done?

C5 (Germany) C5-OPS-05 is one control. If you already hold one of the frameworks below, a reviewed crosswalk already says how much of C5 (Germany) your existing evidence covers. Hold Cloud Security Alliance Cloud Controls Matrix (CCM) v4.0.1 and 95 of 121 C5 (Germany) controls already carry evidence.

Each report names every control your existing framework evidences, every one it does not, the reasoning behind each claim, and the claims that were argued against and rejected. 0 were rejected on the Cloud Security Alliance Cloud Controls Matrix (CCM) v4.0.1 pair alone.

Query this from an agent

The graph holds this control, the 52 it maps to, and the evidence behind each claim, over MCP and REST.