CIS Critical Security Control 2: Inventory and Control of Software Assets (v8)
This course is part of our series on the CIS Top 18 Critical Security Controls v8, and covers Control 2: Inventory and Control of Software Assets. The primary objective of this control is to ensure that only authorized, vetted, and necessary software is operational on the organization's networks.

Course Content
This course helps learners prepare for industry certifications around the CIS Controls while building practical software asset management training experience. These security controls can be combined with frameworks such as NIST SP 800-37 (the NIST Risk Management Framework, RMF) to provide organizations with defense-in-depth best practices.
CIS Critical Security Control 2: Inventory and Control of Software Assets (v8) focuses on establishing visibility and control over the software operating throughout an organization’s environment. It explores how to identify authorized and unauthorized applications, maintain accurate software inventories, and implement processes that reduce the risks associated with unmanaged, outdated, or vulnerable software.
Through this course, your team will understand how to apply CIS Control 2 to improve operational visibility, reduce software-related security gaps, and build a more resilient cybersecurity program. Start learning today.














