Organizational Readiness for Implementing the Essential Cybersecurity Controls (ECC)

Assess Your Organization’s Readiness to Implement the Essential Cybersecurity Controls

An intelligent, automated assessment that helps your organization measure its readiness to implement the Essential Cybersecurity Controls (ECC), identify gaps, prioritize improvements, and transform assessment results into actionable recommendations and a clear roadmap to strengthen cybersecurity readiness

4
Available Assessment Domains
27
Target Organizational Capability
256
Diagnostic Question
69
Recommendations & Improvement Roadmap

Domains Covered in the Assessment

Domain 1: Cybersecurity Governance

Evaluates the organization’s governance of cybersecurity through strategy, management, policies, responsibilities, risk management, technology projects, regulatory alignment, assurance, human resources, awareness, and training.

Domain2: Cybersecurity Defense

Evaluates the organization’s implementation of technical and operational cybersecurity controls to protect information and technology assets, including asset management, access control, systems, networks, data, vulnerabilities, monitoring, incident management, physical security, and web applications.

Domain3: Cybersecurity Resilience

Evaluates the organization’s integration of cybersecurity resilience requirements into business continuity management to minimize the impact of cyber-related disruptions on critical electronic services and information processing systems and facilities.

Domain4: Third-Party and Cloud Computing Cybersecurity

Evaluates the organization’s management of cybersecurity risks arising from third parties, outsourcing, managed services, cloud computing, and hosting arrangements, including contractual requirements, risk assessment, data protection, incident communication, and regulatory requirements.

Start by assessing one domain for free

Domain3: Cybersecurity Resilience

Evaluates the organization’s integration of cybersecurity resilience requirements into business continuity management to minimize the impact of cyber-related disruptions on critical electronic services and information processing systems and facilities.

100% Automated Assessment
Discover strengths and clearly identify improvement priorities
Prioritize based on the organization’s current state
Executive Dashboard

Fast Performance

Fast, smooth access to assessments, results, and recommendations

Advanced Security

Secure, reliable protection for your assessment data and platform access

Free Review Session

Free session to review results, priorities, actions

Smart Analytics

Clear insights from assessment results, scores, and improvement priorities.