Automate CIS Compliance with BackBox

The Center for Internet Security (CIS) Benchmarks are vendor-specific configuration recommendations to help organizations reduce risk and demonstrate compliance with various government and industry regulations. Network operations and network security teams use the recommendations and best practices to safeguard devices against today’s evolving cyber threats that take advantage of vulnerabilities to exfiltrate data and disrupt Operations.

Even in a single-vendor environment, depending on the number devices, the process can become incredibly complex and a headache to manage. Some organizations may choose to build their own automations for CIS checks. But supporting these automations may not be scalable as a business or an operator typically won’t have capacity to also automate remediations and support updates.

Now imagine a multi-vendor environment which requires creating and maintaining this process across devices from multiple vendors, and introduces the added complexity of having to check multiple dashboards and compile disparate reports into a single, comprehensive report. Being able to confidently say the organization is CIS compliant typically requires a massive investment of time and resources. So, organizations are sometimes in the difficult position of having to prioritize the devices they maintain based on their risk profile and budget, and hope for the best.
BackBox has turned CIS’s 118-page Check Point Firewall Benchmark document into approximately 40 contextually-aware automations focused on key device types. These automations remove the drudgery and reduce risk by validating that a specific configuration meets CIS best practices and can automatically remediate those that do not.

Organizations can confidently report on CIS compliance because all checks and status updates are in one place and easy to see. BackBox also updates the relevant automations whenever a vendor updates a device and CIS updates the Benchmarks, so CIS checks are always current.

Request Free!