[Verse 1] Ten findings on your screen today Five CAT I and five CAT II High and medium risks won't go away Time to fix what we need to do Read the Fix Text carefully now Step by step we'll make it right Follow every single vow Turn those red marks into white [Chorus] Select and fix, then validate Five CAT I, don't hesitate Five CAT II, remediate Re-scan to check, don't sit and wait Fix Text shows the proper way Document what you cannot sway POA and M for another day STIG compliance is here to stay [Verse 2] CAT I findings are critical threats System compromise could be near These are the ones you can't forget Security gaps that cause real fear Apply each fix with precision care Registry keys and service states Permissions set and access shared Validation never hesitates [Chorus] Select and fix, then validate Five CAT I, don't hesitate Five CAT II, remediate Re-scan to check, don't sit and wait Fix Text shows the proper way Document what you cannot sway POA and M for another day STIG compliance is here to stay [Verse 3] CAT II findings need attention too Medium risk but still important Configuration changes coming through System hardening is the warrant Some findings just cannot be fixed Legacy systems or mission need POA and M gets in the mix Justification plants the seed [Bridge] Re-scan the system once again Check each finding one by one Green means victory, red means pain Keep on working till you're done Document everything you see Proof that remediation's real STIG compliance sets us free Security posture we can feel [Chorus] Select and fix, then validate Five CAT I, don't hesitate Five CAT II, remediate Re-scan to check, don't sit and wait Fix Text shows the proper way Document what you cannot sway POA and M for another day STIG compliance is here to stay [Outro] Ten findings down, the work is done Validation shows we've won STIG remediation in the sun Lab four complete, well done
← 3 Handling Exceptions and Waivers | 1 STIG for Containers and Kubernetes →