#1605 Segregation and isolation of business critical systems for continuity change request pending
Regulators are now expecting organisations to protect business critical systems through segregation and isolation capability preventing cyber attacks moving laterally from internet facing systems to vital systems
At the confluence of network design cyber security and continuity management regulators of Critical Infrastructure sectors, their supporting organisations and service providers are now being expected and/or required to be capable of segregating and isolating vital systems from business or internet interfacing systems. This particularly in the five eyes countries.
Skills in understanding vital system segregation and isolation, specifying vital system segregation and isolation requirements, creating system segregation and isolation, and testing and validating effectiveness should be reflected in SFIA10 to maintain currency in these areas.
Proposed change applies to Level 4 - Enable
Current status of this request: pending