> ## Knowledge Base Index
> Fetch the complete knowledge base index at: https://docs.brainframe.com/sitemap.xml
> Use this file to discover available pages before exploring further.
> Pure-Markdown content can be obtained by appending a '.md' suffix to the content URLs listed in the sitemap (without the trailing slash).

# Security

# 🛡 **Security Dashboard** 🛡  
> *From technical and organizational controls to continuity — this is where your security lives.*  

---

## **1️⃣ Page Overview**  
The **Security section** of Brainframe is where you manage the core elements of your organization’s protection strategy.  
Each menu item uses a **consistent layout**: a list view with filters, search, and quick actions for adding new entries.   

![](https://storage.crisp.chat/users/helpdesk/website/-/3/f/2/6/3f26ce462760bc00/screenshot-2026-07-12-at-20370_197qdg1.png =879xauto)
Available menus include:  
* **Controls**  
* **Business Impact Assessments (BIA)**  
* **Business Continuity & Recovery (BCP/DRP)**  
* **Threats & Vulnerabilities**  
---

## **2️⃣ Controls**  

The **Controls** page is where you maintain all governance and technical safeguards.  
Each entry can represent a **policy, procedure, standard, or CIS control**, with ownership clearly assigned.  

**Displayed fields include:**  
* **ID** — Unique reference (e.g., `access`, `logs`).  
* **Name** — Full control or policy title.  
* **Classification of information** — Sensitivity or category (optional).  
* **Owner** — Responsible person or role (e.g., CTO, CISO) (optional).  

|| This is the classical layout for ALL table views in Brainframe.

**Actions available:**  
* ➕ Add new control/policy.  
* 📂 Import file with upload.  
* 🔍 Filter by creation date, owner, or classification.  
* 📤 Export to excel.

📌 *This creates a single source of truth for all security rules and practices.*  
---

## **3️⃣ Business Impact Assessments (BIA)**  

![](https://storage.crisp.chat/users/helpdesk/website/-/3/f/2/6/3f26ce462760bc00/bia-template_1wy7pv8.png =455xauto)
The **BIA menu** helps evaluate the criticality of business processes and resources. It identifies **dependencies** and **expected impacts** of disruptions, feeding directly into continuity planning.  We provide you with a preconfigured template to help you get started,

**Typical fields include:**  
* Process/Asset name  
* Owner  
* Criticality (High/Medium/Low)  
* Maximum tolerable downtime  
* Dependencies  

| BIAs are essential for prioritizing recovery actions.  
---

## **4️⃣ Business Continuity & Recovery (BCP/DRP)**  

This menu manages your **business continuity** and **disaster recovery plans**. Each entry corresponds to a plan or recovery procedure, ensuring you’re prepared for incidents.  

![](https://storage.crisp.chat/users/helpdesk/website/-/3/f/2/6/3f26ce462760bc00/screenshot-2025-08-26-at-23203_1jq51oo.png =723xauto)

**Key details:**  
* Plan type (BCP or DRP)  
* Scope and owner  
* Recovery objectives (RTO, RPO)  
* Linked BIAs and resources  
* Version history for audits  

📌 *Keep your continuity playbooks organized and up to date.*  
---

## **5️⃣ Threats & Vulnerabilities**  

Here you can document known **threats** and **system vulnerabilities**. This supports risk assessments, patch management, and reporting.  

![](https://storage.crisp.chat/users/helpdesk/website/-/3/f/2/6/3f26ce462760bc00/screenshot-2025-08-26-at-23211_s4kwbb.png =648xauto)

**Tracked elements include:**  
* Threat or vulnerability ID  
* Description  
* Affected assets, systems, processes, vendors
* Severity level  
* Mitigation or patch applied  
* Linked risks/incidents  

| Maintaining this library ensures you can respond proactively to evolving risks.  
---

## **6️⃣ Best Practices**  
* 🔄 **Update controls regularly** — reflect policy changes or new frameworks.  
* 🧩 **Connect BIAs to continuity plans** — ensures recovery strategies are aligned.  
* ⚡ **Track vulnerabilities quickly** — link them to incidents if exploited.  
* 📑 **Use ownership fields** — accountability is crucial for audits.  
---

### **🎯 Visual Checklist**  
* [x] Controls documented and assigned  
* [x] BIAs completed for critical processes  
* [ ] BCP/DRP plans reviewed this quarter  
* [ ] Threats & vulnerabilities updated  
