The threat profile for the function is updated periodically and according to defined triggers, such as system changes and external events
Context and Guidance: The organisation should define a schedule for reviewing and updating the established threat profile for the function to ensure that the likely intent, capability, and target of threats currently defined are still accurate and relevant and to add any new threats that have been identified. Given that new threats emerge daily, organisations should consider dedicating resources toward continuous review of threat information and updating of the threat profile if feasible.
Related Practices • Progression: This practice is part of a practice progression. Practice progressions are groups of related practices that represent increasingly complete or more advanced implementations of an activity. The practices in this progression include: THREAT-2c, THREAT-2e, THREAT-2i.