NIST CSF 2.0 Category

PR.PS Platform Security

PR Protect | Harden endpoints, servers, cloud platforms, and application hosts.

Implementation Objective

Reduce exploitable attack surface by applying secure configurations and timely vulnerability remediation.

Implementation Actions

  • Apply secure baseline configurations.
  • Run vulnerability and patch lifecycle.
  • Manage exceptions with expiration.

Evidence Examples

  • Hardening baselines
  • Patch and vuln records
  • Exception tracker

Suggested Metrics

  • Configuration compliance
  • Critical vuln MTTR