Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add Security exceptions handling for projects #89

Open
GBues opened this issue Sep 7, 2023 · 3 comments
Open

Add Security exceptions handling for projects #89

GBues opened this issue Sep 7, 2023 · 3 comments
Labels
easy enhancement New feature or request

Comments

@GBues
Copy link

GBues commented Sep 7, 2023

Hi Bmarsh,

I think it would be great to be able to use gapps to handle security exceptions list for a project and link them to controls. We could have a review system on each exception.

Thanks by advance,
Guillaume

@bmarsh9
Copy link
Owner

bmarsh9 commented Sep 7, 2023

@GBues That's a good idea. Just to be clear, the use case would be if a control can not be implemented for some reason, you could create a security exception within the project, tie it the control, provide a explanation and compensating controls, and get approval?

@GBues
Copy link
Author

GBues commented Sep 8, 2023

Thanks, for your response :)
I thinks we're ok, but to be really really clear here is an exemple

Control : all USB port should be disabled on all computers
Implemented 100%
But on computer X we need it to be allowed, maybe for a small period of time. This is the security exception for me.

I didn't thought of approval but that's a good idea.

I would like to see all exception for my project to review them periodicaly. For this I must have the date of creation, and a date of review for this exception.

@GBues GBues changed the title Add Seccurity exceptions Handling for projects Add Security exceptions handling for projects Sep 8, 2023
@bmarsh9
Copy link
Owner

bmarsh9 commented Sep 8, 2023

Yup that makes sense

@bmarsh9 bmarsh9 added enhancement New feature or request easy labels Sep 8, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
easy enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

2 participants