SAMMY UI is optimized for resolutions with a width 1024px and higher.
ID.AM-08.2
ID.AM-08.2: Patches and security updates for operating systems and critical system components shall be installed.

Patches and security updates for operating systems and critical system components shall be installed.

Documentation Maturity
Implementation Maturity
Description

Patches and security updates for operating systems and critical system components shall be installed.

ID.AM-08.3
ID.AM-08.3: The organisation shall enforce accountability for all its business-critical assets throughout the system lifecycle, including removal, transfers, and disposal.

The organisation shall enforce accountability for all its business-critical assets throughout the system lifecycle, including removal, transfers, and disposal.

Documentation Maturity
Implementation Maturity
Description

The organisation shall enforce accountability for all its business-critical assets throughout the system lifecycle, including removal, transfers, and disposal.

ID.AM-08.4
ID.AM-08.4: The organisation shall ensure that the necessary measures are taken to deal with loss, misuse, damage, or theft of assets.

The organisation shall ensure that the necessary measures are taken to deal with loss, misuse, damage, or theft of assets.

Documentation Maturity
Implementation Maturity
Description

The organisation shall ensure that the necessary measures are taken to deal with loss, misuse, damage, or theft of assets.

ID.AM-08.5
ID.AM-08.5: The organisation shall ensure that disposal actions are approved, tracked, documented, and verified.

The organisation shall ensure that disposal actions are approved, tracked, documented, and verified.

Documentation Maturity
Implementation Maturity
Description

The organisation shall ensure that disposal actions are approved, tracked, documented, and verified.

ID.AM-08.6
ID.AM-08.6: The organisation shall plan, perform and document preventive maintenance and repairs on its critical system components according to approved processes and tools.

The organisation shall plan, perform and document preventive maintenance and repairs on its critical system components according to approved processes and tools.

Documentation Maturity
Implementation Maturity
Description

The organisation shall plan, perform and document preventive maintenance and repairs on its critical system components according to approved processes and tools.

ID.AM-08.7
ID.AM-08.7: The organisation should prevent unauthorised removal of maintenance equipment which contains critical system information of the organisation.

The organisation should prevent unauthorised removal of maintenance equipment which contains critical system information of the organisation.

Documentation Maturity
Implementation Maturity
Description

The organisation should prevent unauthorised removal of maintenance equipment which contains critical system information of the organisation.

ID.AM-08.8
ID.AM-08.8: The organisation should pre-approve, monitor and enforce maintenance tools for use on its critical systems.

The organisation should pre-approve, monitor and enforce maintenance tools for use on its critical systems.

Documentation Maturity
Implementation Maturity
Description

The organisation should pre-approve, monitor and enforce maintenance tools for use on its critical systems.

ID.AM-08.9
ID.AM-08.9: Maintenance tools and portable storage devices shall be inspected as they enter the facility and shall be protected by anti-malware solutions that scan them for malicious code before they are used on the organisation's systems.

Maintenance tools and portable storage devices shall be inspected as they enter the facility and shall be protected by anti-malware solutions that scan them for malicious code before they are used on the organisation's systems.

Documentation Maturity
Implementation Maturity
Description

Maintenance tools and portable storage devices shall be inspected as they enter the facility and shall be protected by anti-malware solutions that scan them for malicious code before they are used on the organisation's systems.

ID.AM-08.10
ID.AM-08.10: The organisation shall verify security controls following maintenance or repairs/patching, and take action as appropriate.

The organisation shall verify security controls following maintenance or repairs/patching, and take action as appropriate.

Documentation Maturity
Implementation Maturity
Description

The organisation shall verify security controls following maintenance or repairs/patching, and take action as appropriate.

ID.AM-08.11
ID.AM-08.11: Remote maintenance and diagnostic activities of organisational assets shall be pre-approved and the performance logged.

Remote maintenance and diagnostic activities of organisational assets shall be pre-approved and the performance logged.

Documentation Maturity
Implementation Maturity
Description

Remote maintenance and diagnostic activities of organisational assets shall be pre-approved and the performance logged.

ID.AM-08.12
ID.AM-08.12: Setting up non-local maintenance and diagnostic sessions over remote network connections shall require strong authenticators and these connections shall be terminated when non-local maintenance is completed.

Setting up non-local maintenance and diagnostic sessions over remote network connections shall require strong authenticators and these connections shall be terminated when non-local maintenance is completed.

Documentation Maturity
Implementation Maturity
Description

Setting up non-local maintenance and diagnostic sessions over remote network connections shall require strong authenticators and these connections shall be terminated when non-local maintenance is completed.

ID.AM-08.13
ID.AM-08.13: The organisation shall require remote maintenance diagnostic services to be performed from a system that implements security features similar to the security features implemented on the equivalent organisation's critical system.

The organisation shall require remote maintenance diagnostic services to be performed from a system that implements security features similar to the security features implemented on the equivalent organisation's critical system.

Documentation Maturity
Implementation Maturity
Description

The organisation shall require remote maintenance diagnostic services to be performed from a system that implements security features similar to the security features implemented on the equivalent organisation's critical system.