Automated mechanisms exist to discover when new certificates are issued for organization-controlled domains.
Control Question
Assessment question for control validation
Does the organization use automated mechanisms to discover when new certificates are issued for organization-controlled domains?
Supply Chain Risk Management (SCRM) Tiers
Applicable SCRM tier levels for this control
Tier 1 - Strategic
Tier 2 - Operational
Core Control Designations
Special designations and baseline inclusions
ESP Level 2: CRY-12
ESP Level 3: CRY-12