Skip to main content
THR

Threat Management

13 controls

Proactively identify and assess technology-related threats, to both assets and business processes, to determine the applicable risk and necessary corrective action.

SCF # Control Name Weight NIST CSF Frameworks
THR-01 Threat Intelligence Program 8 — High Govern 51
THR-02 Indicators of Exposure (IOE) 8 — High Identify 16
THR-03 Threat Intelligence Feeds 8 — High Identify 94
THR-03.1 Threat Intelligence Reporting 8 — High Identify 12
THR-04 Insider Threat Program 8 — High Identify 19
THR-05 Insider Threat Awareness 8 — High Identify 42
THR-06 Vulnerability Disclosure Program (VDP) 8 — High Detect 34
THR-06.1 Security Disclosure Contact Information 1 — Low Detect 3
THR-07 Threat Hunting 4 — Medium Detect 19
THR-08 Tainting 1 — Low Detect 6
THR-09 Threat Catalog 5 — Medium Protect 22
THR-10 Threat Analysis 7 — High Protect 21
THR-11 Behavioral Baselining 5 — Medium Govern 7

The Secure Controls Framework (SCF) is maintained by SCF Council. Use of SCF content is subject to the SCF Terms & Conditions.

Manage SCF Controls in SCF Connect

Streamline your compliance program with automated control tracking, evidence management, and framework mapping.