V-253842
Tanium 7.x Security Technical Implementation Guide
Title
The Tanium documentation identifying recognized and trusted indicator of compromise (IOC) streams must be maintained.
Description
<VulnDiscussion>Using trusted and recognized IOC sources may detect compromise and prevent systems from becoming compromised. An IOC stream is a series or stream of IOCs that are imported from a vendor based on a subscription service. An IOC stream can be downloaded manually or on a scheduled basis. The items in an IOC stream can be manipulated separately after they are imported.</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><...
Fix Text (Documentation Requirement)
Prepare and maintain documentation identifying the Threat Response trusted stream sources.