Cybersecurity Posture Gap Analysis Questionnaire
Organization Information
Organization Name
Contact Person
Email
Governance
Does your organization have a documented cybersecurity policy?
Yes
No
How often is the policy reviewed and updated?
Risk Management
Has your organization performed a cybersecurity risk assessment in the past 12 months?
Yes
No
Please describe your risk assessment process:
Asset Management
Do you maintain an up-to-date inventory of hardware and software assets?
Yes
No
How often is the inventory updated?
Access Control
Are access rights to systems and applications reviewed periodically?
Yes
No
Describe the process for onboarding and offboarding users:
Incident Response
Is there a documented incident response plan?
Yes
No
When was the last incident response exercise performed?
Awareness & Training
Does your organization conduct regular cybersecurity training for employees?
Yes
No
How is training effectiveness measured?
Technical Controls
Are antivirus and anti-malware solutions implemented?
Yes
No
Are security patches applied in a timely manner?
Yes
No
Continuous Improvement
How do you track and remediate identified cybersecurity gaps?
Describe methods used to stay updated on new cybersecurity threats and solutions: