Skip to main content
OPS

Security Operations

11 controls

Deliver secure, compliant and resilient operations through defined processes, skilled personnel, monitoring, escalation and continuous improvement that effectively detect, isolate, and remediate cyber threats while ensuring business resilience.

SCF # Control Name Weight NIST CSF Frameworks
OPS-01 Security Operations Policy 10 — Critical Govern 2
OPS-02 Operations Security 8 — High Govern 40
OPS-03 Security Concept Of Operations (CONOPS) 9 — Critical Protect 16
OPS-04 Standardized Operating Procedures (SOP) 9 — Critical Protect 72
OPS-04.1 System Administrative Processes 9 — Critical Identify 5
OPS-04.2 Database Administrative Processes 9 — Critical Identify 5
OPS-05 Service Delivery (Business Process Support) 7 — High Protect 33
OPS-06 Secure Practices Guidelines 7 — High Protect 4
OPS-07 Security Operations Center (SOC) 8 — High Protect 13
OPS-08 Security Orchestration, Automation, and Response (SOAR) 5 — Medium Protect 7
OPS-09 Shadow Information Technology Detection 8 — High Govern 8

The Secure Controls Framework (SCF) is maintained by SCF Council. Use of SCF content is subject to the SCF Terms & Conditions.

Manage SCF Controls in SCF Connect

Streamline your compliance program with automated control tracking, evidence management, and framework mapping.