Skip to main content

Compute / Serverless Computing

Controls

Version:
IDTitleObjectiveControl FamilyThreat MappingsGuideline MappingsAssessment Requirements
CCC.SvlsComp.CN01Enforce Use of Private Endpoints for Serverless FunctionEnsure that the serverless function is accessible only through a private endpoint, allowing it to communicate securely within a virtual private network and preventing unauthorized external access.Networking
1
3
1
CCC.SvlsComp.CN02Implement Function Invocation Rate LimitsEnsure that function invocation is limited to a specified threshold from any single entity, preventing resource exhaustion and denial of service attacks.Resource
1
2
1

Imports

IDRemarks
CCC.Core.CN01Prevent unencrypted requests
CCC.Core.CN02Ensure data encryption at rest for all stored data
CCC.Core.CN03Implement multi-factor authentication (MFA) for access
CCC.Core.CN04Log all access and changes
CCC.Core.CN05Prevent access from untrusted entities
CCC.Core.CN06Prevent deployment in restricted regions
CCC.Core.CN07Alert on non-human enumeration
CCC.Core.CN09Prevent tampering, deletion, or unauthorized access to access logs
CCC.Core.CN10Prevent data replication to destinations outside of defined trust perimeter