CCI-002626
CCI-002626 Definition
When testing malicious code protection mechanisms, verify the associated incident reporting of the code occurs.
Status | |
Type | CheckType.policy |
Master Assessment Datasheet
Implementation Guidance
The organization being inspected/assessed verifies the incident reporting of the test case occurs when testing malicious code protection mechanisms. The organization must maintain an audit trail of test cases and success or failure.
Validation Procedures
The organization conducting the inspection/assessment obtains and examines the audit trail of test cases and success or failure to ensure the organization being inspected/assessed verifies the incident reporting of the test case occurs when testing malicious code protection mechanisms.
Compelling Evidence
1.) Audit trail of test cases and success or failure.