infoLock Technologies
Data Risk Management Framework Overview
Pages
18
Time to read
12 mins
Publication
Language
English
Pages
18
Time to read
12 mins
Publication
Language
English
The document is a guide detailing the Data Risk Management Framework (DRMF), which serves as an extension of the CIS Controls. It provides a comprehensive set of recommended practices for managing and securing data assets. The framework can be utilized alongside the CIS Controls or independently as a best practices guide. It enables organizations to assess and prioritize gaps in their data security, privacy, and operational practices. The DRMF workbook is structured into major Control Families: Governance, Visibility, and Protection, each containing higher-level Controls and granular Sub-Controls. The guide outlines the roles of a Governing Body in establishing data risk management priorities and measuring the effectiveness of activities. It also emphasizes the importance of continuous monitoring of data at rest, in motion, and data usage to enhance organizational accountability and improve data protection efforts. The document concludes by highlighting the benefits of implementing the DRMF, including improved visibility into data risks and better resource utilization.