IS-11:VM-01
Weekly authenticated internal vulnerability scans on all critical systems
Collectors
| Collector | Relationship | Samples | What it observes |
|---|---|---|---|
| scans.hosts | satisfies | weekly | Weekly authenticated OS package CVE scan of every host in the inventory |
| inventory.ansible | supports | weekly | Discovers hosts and public URLs from the Ansible deployment inventories |
| scans.dependencies | supports | weekly | Scans application lockfiles for known-vulnerable third-party components |
Evidence satisfying this control
| Collected | Collector | Result | Source | Digest |
|---|---|---|---|---|
| No artifact satisfies this control. | ||||