EN   FR

SMART BUILDINGS

Asset Classes

Focus Area

Security and Safety

Topic

Baseline Practices

Question #

S0.2 Cybersecurity Management

Question

Is there a cybersecurity management policy in place?

Applicability

Applicable to All Buildings

Answer

Yes or No

Description

A cybersecurity management policy sets the foundation for a building owner/operator to be able to identify, protect, detect, respond and recover to cybersecurity attacks

Requirements

  1. Conduct annual penetration testing by a third-party service
  2. Conduct annual reviews and refreshers of cybersecurity policies and infrastructure

Documentation

  • Compliance registers
  • Use case — Benefits Realization Report
  • Integrations Report
  • SPoG/Integrated Building Management Platform Specifications

Lead

Other Notes

Scoring

Essential

Scoring Notes

This question is mandatory

Verification