6.4.1
Controls detail rendered from /controls/ctrl_db6151b7aebd90c6.
Overview
| ID | ctrl_db6151b7aebd90c6 |
| Collection | Controls |
| Provider | Vanta Trust Center |
| Company | Xactus |
| URL | - |
| Counts | - |
| Updated | - |
Raw record
| Field | Value |
|---|---|
| id | ctrl_db6151b7aebd90c6 |
| providerId | vanta |
| organizationId | org_3a3e066a26c285b0 |
| trustCenterId | tc_29ce8358998021bd |
| name | 6.4.1 |
| groupName | Infrastructure security |
| status | documented |
| maturity | - |
| description | For public-facing web applications, new threats and vulnerabilities are addressed on an ongoing basis and these applications are protected against known attacks as follows: - Reviewing public-facing web applications via manual or automated application vulnerability security assessment tools or methods as follows: – At least once every 12 months and after significant changes. – By an entity that specializes in application security. – Including, at a minimum, all common software attacks in Requirement 6.2.4. – All vulnerabilities are ranked in accordance with requirement 6.3.1. – All vulnerabilities are corrected. – The application is re-evaluated after the corrections OR - Installing an automated technical solution(s) that continually detects and prevents web-based attacks as follows: – Installed in front of public-facing web applications to detect and prevent web-based attacks. – Actively running and up to date as applicable. – Generating audit logs. – Configured to either block web-based attacks or generate an alert that is immediately investigated. |
| source | {
"field": "graphql.fetchCustomizableControlsDataForExternalTrustCenter"
} |
| company | {
"id": "org_3a3e066a26c285b0",
"name": "Xactus",
"domains": [
"trust.xactus.com",
"xactus.com",
"www.xactus.com"
]
} |
| trust_center | {
"id": "tc_29ce8358998021bd",
"name": "Xactus",
"url": "https://trust.xactus.com",
"host": "trust.xactus.com"
} |
| provider | {
"id": "vanta",
"name": "Vanta Trust Center"
} |
| links | {
"self": "/v1/controls/ctrl_db6151b7aebd90c6",
"company": "/v1/companies/org_3a3e066a26c285b0",
"trust_center": "/v1/trust-centers/tc_29ce8358998021bd",
"provider": "/v1/providers/vanta"
} |
Get this page with API
Rendered from the bluedoor Trust Centers API. Reproduce it:
GET https://api.bluedoor.sh/trust-centers/v1/controls/ctrl_db6151b7aebd90c6JSON