Modules that provide cybersecurity services for compliance (e.g., built-in features for PCI DSS, NERC CIP compliance, recurring activities, etc.)	
 
Modules that securely store, process, or transmit customer account data or other sensitive information	
 
Modules that facilitate network security controls	
 
Modules that virtualize (e.g., machines, networks, appliances, applications, and hypervisors)	
 
Modules purchased, subscribed (e.g., SaaS, bespoke and custom software, etc.)	
 
Tools, code repositories, and systems that implement software configuration management or to systems that can impact the cybersecurity	
 
Not Applicable