Company Profile
This information appears in the Executive Summary of the generated report.
CIS Critical Security Controls v8.1 Implementation Groups are cumulative: IG1 is the essential cyber hygiene baseline every enterprise should implement first, IG2 adds 74 Safeguards for enterprises managing sensitive information across multiple departments, and IG3 adds 23 more for mature enterprises facing targeted and sophisticated attacks.
Include: what the company does, technology stack used, and products and services offered.
For each Safeguard select a status. For Partially Compliant or Non-Compliant items, rate the Likelihood and Impact of the risk the gap exposes (1 = lowest, 5 = highest). Risk Score = Likelihood × Impact.
Risk-Ranked Gaps
Generate Report
The report includes a cover page with the company logo, an Executive Summary, a Detailed Findings section covering every Safeguard in your selected Assessment Scope (IG1, IG2 or IG3), and a Remediation Roadmap.