GLBA · Elements of the information security program
§314.4(d) Regularly test or monitor safeguards
Regularly test or otherwise monitor the effectiveness of safeguards, including continuous monitoring or periodic penetration testing and vulnerability assessments.
Mapped across 10 provisions
Equivalent and related requirements in other frameworks and regulations.
- CIS Controls v8PartialCurated7.1 Establish and maintain a vulnerability management process
Vulnerability management
- Cyber EssentialsPartialCuratedCE-5 Security update management
Vulnerability management
- Essential EightPartialCuratedE8-1 Patch applications
Vulnerability management
- Essential EightPartialCuratedE8-2 Patch operating systems
Vulnerability management
- ISO 27001PartialCuratedA.8.8 Management of technical vulnerabilities
Vulnerability management
- NIST 800-171PartialCurated3.11.2 Scan for vulnerabilities
Vulnerability management
- NIST 800-53PartialCuratedRA-5 Vulnerability monitoring and scanning
Vulnerability management
- NIST CSF 2.0PartialCuratedID.RA-01 Vulnerabilities identified and recorded
Vulnerability management
- PCI DSSPartialCuratedReq. 11 Test security of systems and networks regularly
Vulnerability management
- SOC 2PartialCuratedCC7.1 Vulnerability detection and monitoring
Vulnerability management