Analysis of existing approaches to application automation for CIS Controls standards and their limitations
DOI: 10.21293/1818-0442-2024-27-4-80-87
DOI: 10.21293/1818-0442-2024-27-4-80-87
Abstract: This article analyzes the existing Bash-based tools for automa-tion of CIS Controls standards, focusing on their capabilities and limitations when applied in corporate environments. Tools such as Ubuntu Security Guide, JShielder, Aqua Security CIS Benchmarks, and JAMF Compliance Reporter are examined. While effective for meeting security requirements, these solu-tions face scalability and centralized management challenges, limiting their use in heterogeneous systems. The article con-cludes with the rationale for using a tool such as Ansible, that has centralized management and automated auditing capabilities, to enable non-continuous CIS compliance in large enterprise infrastructures.
Keywords: automation, CIS Controls, Ansible, information security, Bash, corporate systems, DevOps
For citation:
Vasilevskiy P. A., Bulgakova E. V. Analysis of existing approaches to application automation for CIS Controls standards and their limitations. Doklady Tomskogo gosudarstvennogo universiteta sistem upravleniya i radioelektroniki, 2024, vol. 27, no. 4, pp. 80–87. DOI: 10.21293/1818-0442-2024-27-4-80-87
Authors and copyright holders:
Executive Secretary of the Editor’s Office
Editor’s Office: 40 Lenina Prospect, Tomsk, 634050, Russia
Phone / Fax: + 7 (3822) 701-582
Viktor N. Maslennikov
Executive Secretary of the Editor’s Office
Editor’s Office: 40 Lenina Prospect, Tomsk, 634050, Russia
Phone / Fax: + 7 (3822) 51-21-21 / 51-43-02