SekitCrosswalk
Start free trial
Sekit CSF · Governance & Risk · Policy

RCF-0013Exception management

Exceptions to security policies are formally documented and approved

Maps to ISO/IEC 27001:2022 · Annex A controls

Curated mapping with the reasoning, not just the codes.

Maps to NIST CSF 2.0

Curated mapping with the reasoning, not just the codes.

Evidence that proves this control

What an auditor, or Sekit's evidence engine, asks for.

Information security policy
The written, leadership-approved document that sets the company's security rules: what is protected, how, and who is responsible.
From the Sekit evidence catalog

This topic through the other lenses

All Governance & Risk controls

Ask Sekura: “What evidence proves RCF-0013?”
Connect your AI · free MCP
https://sekit.ai/api/mcp/crosswalk
  1. In Claude or ChatGPT, add a custom connector and paste this URL.
  2. Sign in with your email to finish. Free, read-only, no organization required.