Skip to content

Commit c57b96c

Browse files
committed
flip samm ref
1 parent 20a98da commit c57b96c

20 files changed

+428
-428
lines changed

src/assets/YAML/default/BuildAndDeployment/Build.yaml

Lines changed: 7 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -31,7 +31,7 @@ Build and Deployment:
3131
- $ref: src/assets/YAML/default/implementations.yaml#/implementations/container-technologi
3232
references:
3333
samm2:
34-
- I-SB-2-A
34+
- I-SB-A-2
3535
iso27001-2017:
3636
- 14.2.6
3737
iso27001-2022:
@@ -72,7 +72,7 @@ Build and Deployment:
7272
- $ref: src/assets/YAML/default/implementations.yaml#/implementations/container-technologi
7373
references:
7474
samm2:
75-
- I-SB-1-A
75+
- I-SB-A-1
7676
iso27001-2017:
7777
- 12.1.1
7878
- 14.2.2
@@ -114,7 +114,7 @@ Build and Deployment:
114114
- Defined build process
115115
references:
116116
samm2:
117-
- I-SB-1-B
117+
- I-SB-B-1
118118
iso27001-2017:
119119
- 14.2.6
120120
iso27001-2022:
@@ -147,8 +147,8 @@ Build and Deployment:
147147
implementation: []
148148
references:
149149
samm2:
150-
- I-SB-1-B
151-
- D-TA-1-A
150+
- I-SB-B-1
151+
- D-TA-A-1
152152
iso27001-2017:
153153
- 8.1
154154
- 8.2
@@ -186,7 +186,7 @@ Build and Deployment:
186186
- Pinning of artifacts
187187
references:
188188
samm2:
189-
- I-SB-1-A
189+
- I-SB-A-1
190190
iso27001-2017:
191191
- 14.2.6
192192
iso27001-2022:
@@ -213,7 +213,7 @@ Build and Deployment:
213213
- Defined build process
214214
references:
215215
samm2:
216-
- I-SB-2-A
216+
- I-SB-A-2
217217
iso27001-2017:
218218
- 14.2.6
219219
iso27001-2022:

src/assets/YAML/default/BuildAndDeployment/Deployment.yaml

Lines changed: 18 additions & 18 deletions
Original file line numberDiff line numberDiff line change
@@ -20,7 +20,7 @@ Build and Deployment:
2020
- Smoke Test
2121
references:
2222
samm2:
23-
- I-SD-3-A
23+
- I-SD-A-3
2424
iso27001-2017:
2525
- 17.2.1 # Availability of information processing facilities
2626
- 12.1.1 # Documented operational procedures
@@ -59,7 +59,7 @@ Build and Deployment:
5959
level: 2
6060
references:
6161
samm2:
62-
- O-OM-2-B
62+
- O-OM-B-2
6363
iso27001-2017:
6464
- 11.2.7
6565
iso27001-2022:
@@ -89,7 +89,7 @@ Build and Deployment:
8989
- $ref: src/assets/YAML/default/implementations.yaml#/implementations/docker
9090
references:
9191
samm2:
92-
- I-SD-1-A
92+
- I-SD-A-1
9393
iso27001-2017:
9494
- 12.1.1
9595
- 14.2.2
@@ -120,7 +120,7 @@ Build and Deployment:
120120
- $ref: src/assets/YAML/default/implementations.yaml#/implementations/hashicorp-vault
121121
references:
122122
samm2:
123-
- I-SD-1-B
123+
- I-SD-B-1
124124
iso27001-2017:
125125
- 9.4.5
126126
- 14.2.6
@@ -154,7 +154,7 @@ Build and Deployment:
154154
- Environment depending configuration parameters (secrets)
155155
references:
156156
samm2:
157-
- I-SD-2-B
157+
- I-SD-B-2
158158
iso27001-2017:
159159
- 14.1.3
160160
- 13.1.3
@@ -196,9 +196,9 @@ Build and Deployment:
196196
- $ref: src/assets/YAML/default/implementations.yaml#/implementations/image-metadata-collector
197197
references:
198198
samm2:
199-
- I-SB-3-B
200-
- I-SB-2-B
201-
- I-SB-1-B
199+
- I-SB-B-3
200+
- I-SB-B-2
201+
- I-SB-B-1
202202
iso27001-2017:
203203
- 8.1
204204
- 8.2
@@ -230,8 +230,8 @@ Build and Deployment:
230230
- $ref: src/assets/YAML/default/implementations.yaml#/implementations/image-metadata-collector
231231
references:
232232
samm2:
233-
- I-SB-1-B
234-
- D-TA-1-B
233+
- I-SB-B-1
234+
- D-TA-B-1
235235
iso27001-2017:
236236
- 8.1
237237
- 8.2
@@ -262,8 +262,8 @@ Build and Deployment:
262262
- $ref: src/assets/YAML/default/implementations.yaml#/implementations/image-metadata-collector
263263
references:
264264
samm2:
265-
- I-SB-1-B
266-
- D-TA-1-B
265+
- I-SB-B-1
266+
- D-TA-B-1
267267
iso27001-2017:
268268
- 8.1
269269
- 8.2
@@ -290,8 +290,8 @@ Build and Deployment:
290290
- Defined deployment process
291291
references:
292292
samm2:
293-
- I-SD-2-A
294-
- I-SD-3-A
293+
- I-SD-A-2
294+
- I-SD-A-3
295295
iso27001-2017:
296296
- 12.5.1
297297
- 14.2.2
@@ -323,8 +323,8 @@ Build and Deployment:
323323
- Defined build process
324324
references:
325325
samm2:
326-
- I-SD-2-A
327-
- I-SD-3-A
326+
- I-SD-A-2
327+
- I-SD-A-3
328328
iso27001-2017:
329329
- 14.3.1
330330
- 14.2.8
@@ -357,7 +357,7 @@ Build and Deployment:
357357
- Same artifact for environments
358358
references:
359359
samm2:
360-
- I-SD-2-A
360+
- I-SD-A-2
361361
iso27001-2017:
362362
- 14.3.1
363363
- 14.2.8
@@ -391,7 +391,7 @@ Build and Deployment:
391391
- $ref: src/assets/YAML/default/implementations.yaml#/implementations/packj
392392
references:
393393
samm2:
394-
- O-EM-1-A
394+
- O-EM-A-1
395395
iso27001-2017:
396396
- Not explicitly covered by ISO 27001 - too specific
397397
- 14.2.1

src/assets/YAML/default/BuildAndDeployment/PatchManagement.yaml

Lines changed: 7 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -17,7 +17,7 @@ Build and Deployment:
1717
implementation: []
1818
references:
1919
samm2:
20-
- O-EM-1-B
20+
- O-EM-B-1
2121
iso27001-2017:
2222
- 12.6.1
2323
- 12.5.1
@@ -58,7 +58,7 @@ Build and Deployment:
5858
- $ref: src/assets/YAML/default/implementations.yaml#/implementations/renovate
5959
references:
6060
samm2:
61-
- O-EM-1-B
61+
- O-EM-B-1
6262
iso27001-2017:
6363
- 12.6.1
6464
- 14.2.5
@@ -93,7 +93,7 @@ Build and Deployment:
9393
implementation: []
9494
references:
9595
samm2:
96-
- O-EM-2-B
96+
- O-EM-B-2
9797
iso27001-2017:
9898
- 12.6.1
9999
iso27001-2022:
@@ -129,7 +129,7 @@ Build and Deployment:
129129
- $ref: src/assets/YAML/default/implementations.yaml#/implementations/distroless-usage
130130
references:
131131
samm2:
132-
- I-SB-2-B
132+
- I-SB-B-2
133133
iso27001-2017:
134134
- hardening is missing in ISO 27001
135135
- 14.2.1
@@ -169,7 +169,7 @@ Build and Deployment:
169169
implementation: []
170170
references:
171171
samm2:
172-
- O-EM-1-B
172+
- O-EM-B-1
173173
iso27001-2017:
174174
- 12.6.1
175175
iso27001-2022:
@@ -204,7 +204,7 @@ Build and Deployment:
204204
- $ref: src/assets/YAML/default/implementations.yaml#/implementations/sample-concept-1
205205
references:
206206
samm2:
207-
- O-EM-2-B
207+
- O-EM-B-2
208208
iso27001-2017:
209209
- 12.6.1
210210
iso27001-2022:
@@ -237,7 +237,7 @@ Build and Deployment:
237237
- $ref: src/assets/YAML/default/implementations.yaml#/implementations/renovate
238238
references:
239239
samm2:
240-
- O-EM-2-B
240+
- O-EM-B-2
241241
iso27001-2017:
242242
- 12.6.1
243243
iso27001-2022:

src/assets/YAML/default/CultureAndOrganization/Design.yaml

Lines changed: 9 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -40,7 +40,7 @@ Culture and Organization:
4040
- $ref: src/assets/YAML/default/implementations.yaml#/implementations/threat-matrix-for-storage
4141
references:
4242
samm2:
43-
- D-TA-2-B
43+
- D-TA-B-2
4444
iso27001-2017:
4545
- Not explicitly covered by ISO 27001
4646
- May be part of risk assessment
@@ -71,8 +71,8 @@ Culture and Organization:
7171
implementation: []
7272
references:
7373
samm2:
74-
- D-TA-1-B
75-
- D-TA-2-A
74+
- D-TA-B-1
75+
- D-TA-A-2
7676
iso27001-2017:
7777
- Not explicitly covered by ISO 27001
7878
- May be part of risk assessment
@@ -152,7 +152,7 @@ Culture and Organization:
152152
Source: OWASP Project Integration Project
153153
references:
154154
samm2:
155-
- D-TA-2-B
155+
- D-TA-B-2
156156
iso27001-2017:
157157
- Not explicitly covered by ISO 27001
158158
- May be part of risk assessment
@@ -185,7 +185,7 @@ Culture and Organization:
185185
- $ref: src/assets/YAML/default/implementations.yaml#/implementations/don-t-forget-evil-user-stories
186186
references:
187187
samm2:
188-
- D-TA-2-B
188+
- D-TA-B-2
189189
- V-RT-B-2
190190
iso27001-2017:
191191
- Not explicitly covered by ISO 27001
@@ -221,7 +221,7 @@ Culture and Organization:
221221
- Creation of threat modeling processes and standards
222222
references:
223223
samm2:
224-
- D-TA-2-B
224+
- D-TA-B-2
225225
iso27001-2017:
226226
- Not explicitly covered by ISO 27001
227227
- May be part of project management
@@ -258,8 +258,8 @@ Culture and Organization:
258258
- Conduction of simple threat modeling on technical level
259259
references:
260260
samm2:
261-
- D-TA-3-B
262-
- D-TA-2-B
261+
- D-TA-B-3
262+
- D-TA-B-2
263263
iso27001-2017:
264264
- Not explicitly covered by ISO 27001
265265
- May be part of risk assessment
@@ -291,7 +291,7 @@ Culture and Organization:
291291
implementation: []
292292
references:
293293
samm2:
294-
- G-SM-2-A
294+
- G-SM-A-2
295295
iso27001-2017:
296296
- 5.1.1
297297
- 7.2.1

0 commit comments

Comments
 (0)