Communications Security Establishment Canada

159 datasets found
  • Open Information

    Security Considerations for the Use of Removable Media Devices for Protected C and Classified Information (ITSB-112)

    This bulletin is in support of the Treasury Board of Canada Secretariat (TBS) Information Technology Policy Implementation Notice 2014-01 (ITPIN: 2014-01). The notice, released in May 2014, describes the risks posed by, and the possible mitigations for, removable media devices that are used to...
    Organization:
    Communications Security Establishment Canada
    Resource Formats:
    • HTML
  • Open Information

    ITSP.50.104 Guidance on Defence in Depth for Cloud-Based Services

    This document is part of a suite of documents developed by the Cyber Centre to help secure cloud-based services and supports the cloud security risk management approach defined in ITSM.50.062 Cloud Security Risk Management.
    Organization:
    Communications Security Establishment Canada
    Resource Formats:
    • HTML
  • Open Information

    Malicious Cyber Activity Targeting Information Technology Managed Service Providers

    The Canadian Centre for Cyber Security (Cyber Centre) is aware of the ongoing malicious cyber activity targeting information technology (IT) managed service providers (MSPs) and has been providing advice and guidance to Canada-based MSPs and Canadian businesses who use MSP services.
    Organization:
    Communications Security Establishment Canada
    Resource Formats:
    • HTML
  • Open Information

    Guidance on Cloud Service Cryptography (ITSP.50.106)

    "Cloud computing has the potential to provide your organization with flexible, on-demand, scalable, and self-service information technology (IT) provisioning. To deliver this potential, it is imperative that we address the security and privacy dimensions of cloud computing. Cryptography is one of...
    Organization:
    Communications Security Establishment Canada
    Resource Formats:
    • HTML
    • PDF
  • Open Information

    Guidance on the Security Categorization of Cloud-Based Services (ITSP.50.103)

    This document is part of a suite of documents that the Cyber Centre has developed to help secure cloud-based services. Security categorization, the selection of a security control profile, and the selection of a cloud deployment model and a cloud service model are the first three steps of the...
    Organization:
    Communications Security Establishment Canada
    Resource Formats:
    • HTML
  • Open Information

    Cloud Security Risk Management (ITSM.50.062)

    To enable the adoption of cloud computing, the Government of Canada (GC) developed an integrated risk management approach to establish cloud-based services. ITSM.50.062 outlines this approach which can be applied to all cloud based services independently of the cloud service and deployment models.
    Organization:
    Communications Security Establishment Canada
    Resource Formats:
    • HTML
  • Open Information

    Cloud Service Provider Information Technology Security Assessment Process (ITSM.50.100)

    The purpose of this document is to describe CCCS’s Cloud Service Provider (CSP) Information Technology Security (ITS) Assessment Program. The objective of the CSP ITS Assessment Program is to assist Government of Canada (GC) departments and agencies in their evaluation of CSP services being...
    Organization:
    Communications Security Establishment Canada
    Resource Formats:
    • HTML
  • Open Information

    CCNSS Bulletin Edition 2 | June 2018

    "In This Edition Recent Approval of Two New Standards Recent Discussion on Physical Security Future Meeting Agendas September and December Contact Us "
    Organization:
    Communications Security Establishment Canada
    Resource Formats:
    • PDF
  • Open Information

    CCNSS Bulletin Edition 1 | March 2018

    "In This Edition Recent Approval of Two New Standards Recent Discussion on CEO Material Future Meeting Agendas May and September Contact Us "
    Organization:
    Communications Security Establishment Canada
    Resource Formats:
    • PDF
  • Open Information

    Joint Cybersecurity Advisory: Technical Approaches to Uncovering and Remediating Malicious Activity

    This joint advisory is the result of a collaborative research effort by the cybersecurity authorities of five nations: Australia, Canada, New Zealand, the United Kingdom, and the United States. It highlights technical approaches to uncovering malicious activity and includes mitigation steps...
    Organization:
    Communications Security Establishment Canada
    Resource Formats:
    • HTML
  • Open Information

    Doppelganger Campaigns and Wire Transfer Fraud

    The purpose of this Information Note is to draw attention Doppelganger Campaigns and Wire Transfer Fraud.
    Organization:
    Communications Security Establishment Canada
    Resource Formats:
    • HTML
  • Open Information

    CSE Top 10 IT Security Actions

    The purpose of this Information Note is to draw attention to the top 10 IT security actions as recommended by CSE.
    Organization:
    Communications Security Establishment Canada
    Resource Formats:
    • HTML
  • Open Information

    Joint Report On Publicly Available Hacking Tools

    "This report is a collaborative research effort by the cyber security authorities of five nations: Australia, Canada, New Zealand, the UK and USA. In it we highlight the use of five publicly-available tools, which have been used for malicious purposes in recent cyber incidents around the world....
    Organization:
    Communications Security Establishment Canada
    Resource Formats:
    • HTML
  • Open Information

    2019 Update: Cyber Threats to Canada's Democratic Process

    This document provides an update to the 2017 report released by CSE. Its purpose is to let Canadians know about the cyber threats to our democratic process in 2019.
    Organization:
    Communications Security Establishment Canada
    Resource Formats:
    • HTML