Verify that regulated private data is stored encrypted while at rest, such as Personally Identifiable Information (PII), sensitive personal information, or data assessed likely to be subject to EU's GDPR.
Level 1 required: False
Level 2 required: True
Level 3 required: True
CWE: 311
Verify that regulated health data is stored encrypted while at rest, such as medical records, medical device details, or de-anonymized research records.
Level 1 required: False
Level 2 required: True
Level 3 required: True
CWE: 311
Verify that regulated financial data is stored encrypted while at rest, such as financial accounts, defaults or credit history, tax records, pay history, beneficiaries, or de-anonymized market or research records.
Level 1 required: False
Level 2 required: True
Level 3 required: True
CWE: 311
Credit via OWASP ASVS. For more information visit The OWASP ASVS Project or Github respository.. OWASP ASVS is under the Creative Commons Attribution-Share Alike v3.0 license.
Loading comments 0%