CIS Hosted CSAT FAQ's


Product Name

CIS CSAT Hosted (Controls Self Assessment Tool)

Product Version

All

Date

Mar 25, 2021



 

Problem

This is an FAQ for CIS Hosted CSAT

How does CIS-Hosted CSAT work?

CIS-Hosted CSAT is based on the popular AuditScripts CIS Controls Manual Assessment Tool, which helps organizations document the implementation, automation, reporting and formalization of the best practices found in the CIS Controls. CIS CSAT builds on this work, enabling organizations to collaborate on assessments and scale their tracking over time through an online platform.

How do I register for the CIS-Hosted CSAT tool?

Please register at https://csat.cisecurity.org/. After registering, you can access and use CIS-Hosted CSAT by visiting the same URL

How was the tool developed?

The CIS-Hosted CSAT platform is a generous contribution of intellectual property donated by EthicalHat and is now maintained by CIS.

Where is my data stored? How is it used?

Assessment data is stored on our secured CIS infrastructure (AWS East region) and will not be shared with any third parties. The data is encrypted and follows our  established best practices for AWS. Data may be used to help us enhance the CIS Controls security best practices.

We provided CIS CSAT both to support the community that has helped create the CIS Controls and to provide insight into some of the gaps that exist so that we can work together to improve everyone's security posture. Our content is consensus-developed and community-driven, and we are truly indebted to the amazing folks that offer their time and expertise in our communities. The data from CIS CSAT will be aimed at improving the CIS Controls for the benefit of organizations everywhere. If you prefer not to share your data with CIS, consider using CSAT Pro instead

Is there a CIS-Hosted CSAT WorkBench Community?

Yes, we welcome your feedback in our public community on the CIS WorkBench platform. It's free to join - sign up and access the CIS CSAT Feedback Community.

What types of user roles are available in CIS-Hosted CSAT?

Information on the user roles is available at: Users and Permission for CIS CSAT tool

Where can I find information about CIS-Hosted CSAT versions?

The latest information is available from CIS CSAT Blog posts

Is a demo of CIS-Hosted CSAT available?

Yes, a recorded demo is available in the CIS WorkBench Support Center Webinars/Training section: Leveraging the Controls Self Assessment Tool (CSAT).  Please note that this recording took place prior to the release of v1.3.0.

I noticed that the website for the CIS-Hosted CSAT Tool does not have a timeout due to inactivity.

This has been logged as a feature enhancement request for the CSAT tool. The current workaround would be to log out of the session.


Copyright © 2020

Center for Internet Security®