Secure by Design: A Guide for Manufacturers (CISA)
Principle 2: Embrace radical transparency and accountability – Secure by Design: A Guide for Manufacturers (CISA)

Secure by Design: A Guide for Manufacturers (CISA) P2-PD1: Establish and publish internal security controls

Because cloud and SaaS providers become targets once customer data moves to them, they should publish statistics on their own internal controls, such as the deployment of phishing-resistant MFA like FIDO; ideally no staff member can reach customer or other sensitive data without it.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Other controls in Principle 2: Embrace radical transparency and accountability – Secure by Design: A Guide for Manufacturers (CISA)

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.