What is CIS?
The Center for Internet Security (CIS) benchmarks, known as CIS Benchmarks, are a collection of best-practice cybersecurity standards for various IT systems and products. These benchmarks provide fundamental configurations that guarantee compliance with industry-recognized cybersecurity standards. CIS Benchmarks were created by CIS, in collaboration with communities of cybersecurity experts from various industries and research institutions.
The Center for Internet Security is a non-profit organization that aims to identify and promote the best cybersecurity standards and policies. The organization's main goal is to take a collaborative approach to improving cybersecurity and responding to known cyber threats. To do this, CIS provides a range of tools, resources and programs to ensure IT governance best practices within organizations and government. Many of these tools and resources can be accessed free of charge.
CIS benchmarks can be seen as a framework for configuring IT services and products. Organizations can use these guidelines to improve their cybersecurity and help protect against cyber threats. CIS benchmarks cover a wide range of products and systems, including server software, operating systems and network devices.
CIS Compliance Audit
As ADEO, we conduct audits to determine the compliance of companies and businesses with CIS benchmarks. Through this approach, we assess the current state of cyber security and recommend a roadmap to achieve the targeted level of compliance. Our audits follow the guidelines of the CIS Top 20 Critical Security Controls, with the 8th version of the list published on May 18, 2021 being the reference point for our assessments.