NIST CSF 2.0 · derived mapping target
PR.IR-01Networks protected from unauthorized access
Protect networks and environments from unauthorized logical access and use, with segmentation and controls that contain an intruder who gets in.
Mapping at a glance
PR.IR-01Networks protected from unauthorized accessNIST CSF 2.0
PR.IR-01 is covered by 39 Sekit CSF controls. +34 more in the table below. Open in the full graph →
Mapped from the Sekit CSF
The Sekit controls that cover this requirement, lens by lens.
RCF-0082Remote access · PolicyRCF-0083Remote access · ProcessRCF-0084Remote access · TechnicalRCF-0169Network segmentation · PolicyRCF-0170Network segmentation · ProcessRCF-0171Network segmentation · TechnicalRCF-0172Firewall management · PolicyRCF-0173Firewall management · ProcessRCF-0174Firewall management · TechnicalRCF-0175Secure DNS · PolicyRCF-0176Secure DNS · ProcessRCF-0177Secure DNS · TechnicalRCF-0178Email security · PolicyRCF-0179Email security · ProcessRCF-0180Email security · TechnicalRCF-0181TLS termination/hardening · PolicyRCF-0182TLS termination/hardening · ProcessRCF-0183TLS termination/hardening · TechnicalRCF-0184Zero Trust network access · PolicyRCF-0185Zero Trust network access · ProcessRCF-0186Zero Trust network access · TechnicalRCF-0187VPN management · PolicyRCF-0188VPN management · ProcessRCF-0189VPN management · TechnicalRCF-0190Wireless security · PolicyRCF-0191Wireless security · ProcessRCF-0192Wireless security · TechnicalRCF-0313Cabling/security zones · PolicyRCF-0314Cabling/security zones · ProcessRCF-0315Cabling/security zones · TechnicalRCF-0346Workload protection · PolicyRCF-0347Workload protection · ProcessRCF-0348Workload protection · TechnicalRCF-0349Multi-tenancy controls · PolicyRCF-0350Multi-tenancy controls · ProcessRCF-0351Multi-tenancy controls · TechnicalRCF-0421Network segmentation (ICS) · PolicyRCF-0422Network segmentation (ICS) · ProcessRCF-0423Network segmentation (ICS) · Technical
ISO/IEC 27001:2022 counterparts
Reached through the Sekit CSF controls both map to — a mapping, not a formal equivalence.
Cyber Essentials counterparts
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
Network architecture diagram
The drawing or schematic showing how the company's systems connect: networks, firewalls, segments, and links to the internet and the cloud.
Wireless network configuration
How the company's Wi-Fi is secured: encryption, a separate guest network, and control of access points.
VPN and remote access configuration
How employees connect securely to company systems when working outside the office: VPN, remote-access rules and allowed devices.
From the Sekit evidence catalog
Related controls
Via the shared Sekit CSF topic, not the framework's own index.
Ask Sekura: “What evidence proves PR.IR-01?”
Also via MCP, free with account