Framework crosswalk Sekit CSFISO/IEC 27001:2022 Every topic through three lenses: policy, process, technical. Pick a family, then click any control to light up its mappings.
432 controls · 20 families · 2214 mapped pairs
Sekit CSF · Asset Management Crosswalk / Asset Management RCF-0037 Policy 1 mapped Hardware inventory ISO 27001 A.5.9 RCF-0038 Process 1 mapped Hardware inventory ISO 27001 A.5.9 RCF-0039 Technical 2 mapped Hardware inventory ISO 27001 A.5.9 ISO 27001 A.8.9 RCF-0040 Policy 2 mapped Software inventory ISO 27001 A.5.32 ISO 27001 A.5.9 RCF-0041 Process 3 mapped Software inventory ISO 27001 A.5.32 ISO 27001 A.5.9 ISO 27001 A.8.19 RCF-0042 Technical 3 mapped Software inventory ISO 27001 A.5.9 ISO 27001 A.8.19 ISO 27001 A.8.9 RCF-0043 Policy 3 mapped Data inventory ISO 27001 A.5.12 ISO 27001 A.5.34 ISO 27001 A.5.9 RCF-0044 Process 2 mapped Data inventory ISO 27001 A.5.12 ISO 27001 A.5.9 RCF-0045 Technical 3 mapped Data inventory ISO 27001 A.5.12 ISO 27001 A.5.9 ISO 27001 A.8.12 RCF-0046 Policy 2 mapped Service inventory ISO 27001 A.5.19 ISO 27001 A.5.9 RCF-0047 Process 3 mapped Service inventory ISO 27001 A.5.19 ISO 27001 A.5.22 ISO 27001 A.5.9 RCF-0048 Technical 3 mapped Service inventory ISO 27001 A.5.22 ISO 27001 A.5.9 ISO 27001 A.8.16 RCF-0049 Policy 2 mapped Ownership & custodians ISO 27001 A.5.2 ISO 27001 A.5.9 RCF-0050 Process 3 mapped Ownership & custodians ISO 27001 A.5.2 ISO 27001 A.5.36 ISO 27001 A.5.9 RCF-0051 Technical 3 mapped Ownership & custodians ISO 27001 A.5.9 ISO 27001 A.8.15 ISO 27001 A.8.16 RCF-0052 Policy 2 mapped Criticality tagging ISO 27001 A.5.12 ISO 27001 A.5.9 RCF-0053 Process 2 mapped Criticality tagging ISO 27001 A.5.12 ISO 27001 A.5.9 RCF-0054 Technical 3 mapped Criticality tagging ISO 27001 A.5.9 ISO 27001 A.8.16 ISO 27001 A.8.9 RCF-0055 Policy 2 mapped CMDB quality ISO 27001 A.5.37 ISO 27001 A.5.9 RCF-0056 Process 2 mapped CMDB quality ISO 27001 A.5.9 ISO 27001 A.8.32 RCF-0057 Technical 3 mapped CMDB quality ISO 27001 A.5.9 ISO 27001 A.8.32 ISO 27001 A.8.9 RCF-0058 Policy 1 mapped Shadow IT discovery ISO 27001 A.5.10 RCF-0059 Process 2 mapped Shadow IT discovery ISO 27001 A.5.10 ISO 27001 A.5.9 RCF-0060 Technical 3 mapped Shadow IT discovery ISO 27001 A.5.10 ISO 27001 A.5.9 ISO 27001 A.8.16
ISO/IEC 27001:2022 A.5.2 Information security roles and responsibilities A.5.9 Inventory of information and other associated assets A.5.10 Acceptable use of information and other associated assets A.5.12 Classification of information A.5.19 Information security in supplier relationships A.5.22 Monitoring, review and change management of supplier services A.5.32 Intellectual property rights A.5.34 Privacy and protection of personal identifiable information (PII) A.5.36 Compliance with policies, rules and standards for information security A.5.37 Documented operating procedures A.8.9 Configuration management A.8.12 Data leakage prevention A.8.15 Logging A.8.16 Monitoring activities A.8.19 Installation of software on operational systems A.8.32 Change management