NIST CSF 2.0 · derived mapping target
GV.RR-04Cybersecurity in human resources
Build security into hiring, onboarding, role changes, and departures so access and obligations follow people correctly through their whole time with you.
Mapping at a glance
GV.RR-04Cybersecurity in human resourcesNIST CSF 2.0
GV.RR-04 is covered by 3 Sekit CSF controls. Open in the full graph →
Mapped from the Sekit CSF
The Sekit controls that cover this requirement, lens by lens.
RCF-0004Roles & responsibilities · PolicyRCF-0005Roles & responsibilities · ProcessRCF-0006Roles & responsibilities · Technical
ISO/IEC 27001:2022 counterparts
Reached through the Sekit CSF controls both map to — a mapping, not a formal equivalence.
ISO/IEC 42001:2023 — Annex A counterparts
Cyber Essentials counterparts
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
Joiner-mover-leaver procedure
The process the company follows when someone joins, changes role, or leaves: how access and devices are granted and removed.
From the Sekit evidence catalog
Related controls
Via the shared Sekit CSF topic, not the framework's own index.
Ask Sekura: “What evidence proves GV.RR-04?”
Also via MCP, free with account