SekitCrosswalk
Sekit CSF · Governance & Risk · Policy

RCF-0001Policy management

The company has a formal written security policy approved by leadership

Maps to ISO/IEC 27001:2022

Curated mapping with the reasoning, not just the codes.

Maps to NIST CSF 2.0

Curated mapping with the reasoning, not just the codes.

Maps to ISO/IEC 42001:2023 — Annex A

Curated mapping with the reasoning, not just the codes.

Evidence that proves this control

What an auditor, or Sekit's evidence engine, asks for.

Information security policy
The written, leadership-approved document that sets the company's security rules: what is protected, how, and who is responsible.
From the Sekit evidence catalog

This topic through the other lenses

All Governance & Risk controls

Ask Sekura: “What evidence proves RCF-0001?”
Also via MCP, free with account