Framework crosswalk Sekit CSFISO/IEC 27001:2022 Every topic through three lenses: policy, process, technical. Pick a family, then click any control to light up its mappings.
432 controls · 20 families · 2214 mapped pairs
Sekit CSF · Cloud Security Crosswalk / Cloud Security RCF-0331 Policy 2 mapped Shared responsibility model ISO 27001 A.5.19 ISO 27001 A.5.23 RCF-0332 Process 2 mapped Shared responsibility model ISO 27001 A.5.22 ISO 27001 A.5.23 RCF-0333 Technical 2 mapped Shared responsibility model ISO 27001 A.5.23 ISO 27001 A.8.9 RCF-0334 Policy 2 mapped Cloud IAM ISO 27001 A.5.15 ISO 27001 A.5.23 RCF-0335 Process 2 mapped Cloud IAM ISO 27001 A.5.18 ISO 27001 A.8.2 RCF-0336 Technical 3 mapped Cloud IAM ISO 27001 A.5.16 ISO 27001 A.8.2 ISO 27001 A.8.5 RCF-0337 Policy 2 mapped CSPM posture ISO 27001 A.5.23 ISO 27001 A.8.9 RCF-0338 Process 2 mapped CSPM posture ISO 27001 A.8.16 ISO 27001 A.8.9 RCF-0339 Technical 2 mapped CSPM posture ISO 27001 A.8.16 ISO 27001 A.8.9 RCF-0340 Policy 1 mapped KMS & HSM ISO 27001 A.8.24 RCF-0341 Process 1 mapped KMS & HSM ISO 27001 A.8.24 RCF-0342 Technical 1 mapped KMS & HSM ISO 27001 A.8.24 RCF-0343 Policy 2 mapped Cloud logging ISO 27001 A.5.37 ISO 27001 A.8.15 RCF-0344 Process 2 mapped Cloud logging ISO 27001 A.8.15 ISO 27001 A.8.16 RCF-0345 Technical 2 mapped Cloud logging ISO 27001 A.8.15 ISO 27001 A.8.17 RCF-0346 Policy 2 mapped Workload protection ISO 27001 A.5.23 ISO 27001 A.8.9 RCF-0347 Process 2 mapped Workload protection ISO 27001 A.8.16 ISO 27001 A.8.8 RCF-0348 Technical 2 mapped Workload protection ISO 27001 A.8.16 ISO 27001 A.8.7 RCF-0349 Policy 2 mapped Multi-tenancy controls ISO 27001 A.5.23 ISO 27001 A.8.22 RCF-0350 Process 2 mapped Multi-tenancy controls ISO 27001 A.8.22 ISO 27001 A.8.9 RCF-0351 Technical 2 mapped Multi-tenancy controls ISO 27001 A.8.22 ISO 27001 A.8.3 RCF-0352 Policy 2 mapped SaaS security configuration ISO 27001 A.5.23 ISO 27001 A.8.9 RCF-0353 Process 2 mapped SaaS security configuration ISO 27001 A.5.22 ISO 27001 A.8.9 RCF-0354 Technical 2 mapped SaaS security configuration ISO 27001 A.8.16 ISO 27001 A.8.9
ISO/IEC 27001:2022 A.5.15 Access control A.5.16 Identity management A.5.18 Access rights A.5.19 Information security in supplier relationships A.5.22 Monitoring, review and change management of supplier services A.5.23 Information security for use of cloud services A.5.37 Documented operating procedures A.8.2 Privileged access rights A.8.3 Information access restriction A.8.5 Secure authentication A.8.7 Protection against malware A.8.8 Management of technical vulnerabilities A.8.9 Configuration management A.8.15 Logging A.8.16 Monitoring activities A.8.17 Clock synchronization A.8.22 Segregation of networks A.8.24 Use of cryptography