OPS
Security Operations
11 controls
Deliver secure, compliant and resilient operations through defined processes, skilled personnel, monitoring, escalation and continuous improvement that effectively detect, isolate, and remediate cyber threats while ensuring business resilience.
| SCF # | Control Name | Weight |
|---|---|---|
| OPS-01 | Security Operations Policy | 10 — Critical |
| OPS-02 | Operations Security | 8 — High |
| OPS-03 | Security Concept Of Operations (CONOPS) | 9 — Critical |
| OPS-04 | Standardized Operating Procedures (SOP) | 9 — Critical |
| OPS-04.1 | System Administrative Processes | 9 — Critical |
| OPS-04.2 | Database Administrative Processes | 9 — Critical |
| OPS-05 | Service Delivery (Business Process Support) | 7 — High |
| OPS-06 | Secure Practices Guidelines | 7 — High |
| OPS-07 | Security Operations Center (SOC) | 8 — High |
| OPS-08 | Security Orchestration, Automation, and Response (SOAR) | 5 — Medium |
| OPS-09 | Shadow Information Technology Detection | 8 — High |
The Secure Controls Framework (SCF) is maintained by SCF Council. Use of SCF content is subject to the SCF Terms & Conditions.