| Requirements of attack surface management for cloud computing |
 |
Recommendation ITU-T X.1607 outlines comprehensive requirements for attack surface management (ASM) in cloud computing environments. The key components of ASM include thorough cyber asset discovery, attack surface identification, in-depth analysis and continuous monitoring. These processes are crucial for maintaining a robust security posture in cloud environments.
To effectively manage attack surfaces, attack surface management (ASM) integrates threat intelligence and collaborates with third-party tools. Additionally, it provides detailed visualizations and mappings of assets, data flows and network traffic. This enables organizations to identify and mitigate potential vulnerabilities proactively. By continuously evaluating, securely configuring and protecting attack surfaces in both multi-cloud and hybrid environments, ASM ensures that evolving cyber threats are effectively countered. Furthermore, it facilitates the prioritization and remediation of risks, allowing organizations to maintain a secure and agile cloud infrastructure.
|
|
| Citation: |
https://handle.itu.int/11.1002/1000/16701 |
| Series title: |
X series: Data networks, open system communications and security X.1600-X.1699: Cloud computing security X.1602-X.1629: Cloud computing security requirements, security capabilities |
| Approval date: |
2026-06-10 |
| Provisional name: | X.asm-cc |
| Approval process: | TAP |
|
Status: |
In force |
|
Maintenance responsibility: |
ITU-T Study Group 17 |
|
Further details: |
Patent statement(s)
Development history
[19 related work items in progress]
|
|
|
| Ed. |
ITU-T Recommendation |
Status |
Summary |
Table of Contents |
Download |
|
1
|
X.1607 (06/2026)
|
In force
|
here
|
here
|
here
|
| Title |
Approved on |
Download |
|
Guidelines for identity-based cryptosystems used for cross-domain secure communications
|
2023
|
here
|
|
Overview of hybrid approaches for key exchange with quantum key distribution
|
2022
|
here
|
|
Guidelines for security management of using artificial intelligence technology
|
2022
|
here
|
|
Successful use of security standards (2nd edition)
|
2020
|
here
|
|
Description of the incubation mechanism and ways to improve it
|
2020
|
here
|
|
Strategic approaches to the transformation of security studies
|
2020
|
here
|
|