Framework crosswalk Sekit CSFISO/IEC 27001:2022 Every topic through three lenses: policy, process, technical. Pick a family, then click any control to light up its mappings.
432 controls · 20 families · 2214 mapped pairs
Sekit CSF · Data Security Crosswalk / Data Security RCF-0091 Policy 2 mapped Data classification ISO 27001 A.5.12 ISO 27001 A.5.13 RCF-0092 Process 3 mapped Data classification ISO 27001 A.5.10 ISO 27001 A.5.12 ISO 27001 A.5.13 RCF-0093 Technical 3 mapped Data classification ISO 27001 A.5.12 ISO 27001 A.5.13 ISO 27001 A.8.11 RCF-0094 Policy 2 mapped Encryption at rest ISO 27001 A.5.1 ISO 27001 A.8.24 RCF-0095 Process 1 mapped Encryption at rest ISO 27001 A.8.24 RCF-0096 Technical 2 mapped Encryption at rest ISO 27001 A.8.1 ISO 27001 A.8.24 RCF-0097 Policy 2 mapped Encryption in transit ISO 27001 A.5.14 ISO 27001 A.8.24 RCF-0098 Process 2 mapped Encryption in transit ISO 27001 A.5.14 ISO 27001 A.8.24 RCF-0099 Technical 3 mapped Encryption in transit ISO 27001 A.5.14 ISO 27001 A.8.20 ISO 27001 A.8.24 RCF-0100 Policy 1 mapped Key management ISO 27001 A.8.24 RCF-0101 Process 1 mapped Key management ISO 27001 A.8.24 RCF-0102 Technical 1 mapped Key management ISO 27001 A.8.24 RCF-0103 Policy 2 mapped DLP monitoring ISO 27001 A.5.12 ISO 27001 A.8.11 RCF-0104 Process 3 mapped DLP monitoring ISO 27001 A.8.11 ISO 27001 A.8.31 ISO 27001 A.8.33 RCF-0105 Technical 2 mapped DLP monitoring ISO 27001 A.8.11 ISO 27001 A.8.31 RCF-0106 Policy 1 mapped Data minimization ISO 27001 A.5.9 RCF-0107 Process 1 mapped Data minimization ISO 27001 A.5.9 RCF-0108 Technical 2 mapped Data minimization ISO 27001 A.5.9 ISO 27001 A.8.9 RCF-0109 Policy 4 mapped Data retention & disposal ISO 27001 A.5.1 ISO 27001 A.5.33 ISO 27001 A.7.14 ISO 27001 A.8.10 RCF-0110 Process 3 mapped Data retention & disposal ISO 27001 A.5.33 ISO 27001 A.7.14 ISO 27001 A.8.10 RCF-0111 Technical 3 mapped Data retention & disposal ISO 27001 A.7.14 ISO 27001 A.8.10 ISO 27001 A.8.15 RCF-0112 Policy 2 mapped Secrets management ISO 27001 A.5.1 ISO 27001 A.5.17 RCF-0113 Process 1 mapped Secrets management ISO 27001 A.5.17 RCF-0114 Technical 1 mapped Secrets management ISO 27001 A.5.17
ISO/IEC 27001:2022 A.5.1 Policies for information security A.5.9 Inventory of information and other associated assets A.5.10 Acceptable use of information and other associated assets A.5.12 Classification of information A.5.13 Labelling of information A.5.14 Information transfer A.5.17 Authentication information A.5.33 Protection of records A.7.14 Secure disposal or re-use of equipment A.8.1 User endpoint devices A.8.9 Configuration management A.8.10 Information deletion A.8.11 Data masking A.8.15 Logging A.8.20 Networks security A.8.24 Use of cryptography A.8.31 Separation of development, test and production environments A.8.33 Test information