CIS-18 analysis

Get your IT security assessed with a CIS-18 analysis and Unitas' expert help to prioritize the areas of action. Also an important element, e.g. in connection with NIS 2.

A CIS-18 analysis (also known as CIS Controls) is a structured way to assess and improve information security in an organization. Developed by the Center for Internet Security (CIS), CIS Controls consists of 18 security control areas based on the most common and effective methods of protecting organizations' IT infrastructure and data.

Selected benefits of a CIS-18 analysis

  1. Focus on risk-based controls
    CIS Controls are designed to protect against the most critical cyber threats and focus on practical and action-oriented measures that can reduce the organization's risk exposure. One Unitas CIS-18 analysis therefore provides a clear and practical guide to where the organization should focus its security resources.

  2. Prioritization of security initiatives
    CIS Controls are structured in different levels, which make it possible to focus on basic controls first and then gradually introduce more advanced measures.

  3. Improved threat resilience
    Implementing CIS Controls helps establish a strong line of defense against cyber threats. A CIS-18 analysis therefore provides a good starting point for improving the organisation's overall resilience and ability to react to security incidents.

  4. Benchmarking and comparison with best practice
    CIS Controls is recognized as best practice in cyber security, and an analysis therefore provides an opportunity to benchmark your organization's current level of security as well as others in the same industry as you.

  5. Strengthening compliance
    CIS-18 is broadly compatible with other security standards, such as ISO 27001 and NIS 2. A CIS-18 analysis can help the organization meet the requirements of these standards, as many of the controls in CIS Controls overlap with those found in other frameworks .

Did you know that..?

CIS Controls is developed by the independent Center for Internet Security (non-profit)

1

Unitas relates to your implemented technology, licenses, etc., which are of decisive importance for prioritized choices of outgoing initiatives.

2

There are often SMV-pools, which SMV-companies can apply to have a CIS-18 analysis carried out. Follow along SMV:Digital

3

CIS also has ready-to-implement security packages, e.g. for MS Intune, which consist of approx. 150 safety measures.

CIS-18 as a service?

When you work actively with CIS and the resulting recommendations, it makes very good sense to measure, for example, twice a year. Unitas offers a CIS service that ensures that new measurements, recommendations and management reports are actively followed up and made. By contracting a service, it is simpler to ensure the ongoing development of security improvements – and at a known price! 

Our recommendation an update incl. a management report annually with a half-yearly follow-up.

We throw ourselves around with knowledge...

Order your free material here and receive it in a few minutes in your inbox. To be safe, check your SPAM folder if necessary.

Get material ordered on the website sent

Contact Unitas – your partner in security and compliance

Unitas provides reliable advice in compliance, IT and information security. With a pragmatic approach, we help companies in regulated industries manage security and operational responsibility effectively. Contact us to discuss how we can help you.

Form for contact page

NIS 2 implementation calculates

Wanna join? Sign up Unitas' newsletter

Registration form for newsletter

UNITAS vulnerability scanning