-
-
- How would you like to complete your assessment?
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
- Organization's Approximate Annual Revenue
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
- Are your employees subject to ongoing Identity Screening + Monitoring?
-
- Do you have a written Employee Policy in place for employees to notify your organization of Identity Breaches?
-
- Please tell us if any of the following Corporate Devices are issued to employees?
-
- Are your employees permitted to use their own Personal Devices?
- Is your organization using any Web / Cloud Services?
-
-
-
-
-
- Are you using any Cloud Security Posture Management tools that covers all cloud risks: spanning misconfigurations, vulnerabilities, identity risks, data security, API / PII / crown jewel asset exposure, and advanced threats?
-
-
-
-
- Do you have Single Sign On (SSO) enabled and configured for all 3rd party applications?*
- Do you have At-Rest Encryption enabled for all endpoints and devices?*
- Do you currently have Segregation of Duties + Business Controls in place for all outgoing payments / funds transfers?*
- Do you have a formal Patch Management Program in place which is informed by critical security and vulnerability data within 30 days?*
- Do you have Endpoint Detection & Response (EDR)?*
-
-
- Do you have Managed Detection & Response (MDR) in place for all sources of active detection?*
-
-
- Do you have a Vulnerability Assessment and Management solution to discover and assess assets in your environment, including dynamic cloud or remote workforce assets?
-
-
- Do you have Advanced Email Protection for O365/G-Suite as well as your cloud-based collaboration platforms including: pre and post delivery protection, URL and attachment sandboxing, anti-malware scanning, data loss prevention, and encryption?*
-
-
- Do you have Multi-factor Authentication (MFA) implemented for all users?*
- Do you have Multi-factor Authentication (MFA) implemented for all remote access and 3rd party applications?*
-
-
- Do you have Zero Trust Segmentation implemented for all endpoints?*
-
-
- Do you have an Immutable Backup Strategy (REQUIRES: 3+ backup sources covering all systems / data and 1+ offline / inaccessible from the network where the systems/data reside)?*
-
-
- Do you have a Log Resilience/Centralization Platform (such as a SIEM)?*
-
-
-
-
- Do you have Operational Technologies?
- Do you develop Applications or Custom Code for yourself or customers?
- Do you develop Web Applications or APIs, or utilize APIs for any of your own Web Applications?
- Do you host your own Custom Email or any similar Custom Applications?
-
- Do you have a Written Cyber Security Program in place which aligns with regulatory requirements and/or industry standards (NIST, CIS, etc)?*
-
- Do you have an Incident Response Plan in place currently?
- Is your Incident Response Plan approved by your insurance carrier?
-
-
- Does your organization currently have Cyber Liability Insurance?
-
-
-
-
- When is the Renewal Date for this policy?
-
- Is Cyber Liability Insurance desired?
-
- When would you like coverage to begin?
-
-
-
- Date Submitted*
-
- Should be Empty: