Sekit CSF · Privacy · Technical
RCF-0372Cross-border transfers
Technical controls enforce approved transfer mechanisms and block unauthorised international data flows
Mapping at a glance
RCF-0372Cross-border transfersPrivacy · Technical
RCF-0372 maps to 6 controls across the published frameworks. +1 more in the table below. Open in the full graph →
Maps to ISO/IEC 27001:2022
Curated mapping with the reasoning, not just the codes.
A.5.14Information transferrelatedConfiguring systems to keep personal data in approved regions limits where a transfer can go at all, complementing A.5.14's focus on protecting transfers once they happen.A.5.34Privacy and protection of personal identifiable information (PII)enablesData residency and sharing settings that keep personal data in approved regions stop staff from casually moving data to unapproved destinations.A.8.24Use of cryptographyrelatedThe cross-border transfer facet keeps personal data in approved regions and blocks unapproved international moves, a data-residency control beside rather than inside A.8.24's cryptography rules.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
GV.OC-03Legal and regulatory requirements understoodGV.SC-05Supply chain requirements in contractsGV.SC-06Due diligence before engagement
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
DPIA and cross-border transfer records
The privacy impact assessments done before new data processing and the records of personal-data transfers to other countries.
From the Sekit evidence catalog
This topic through the other lenses
All Privacy controls
Ask Sekura: “What evidence proves RCF-0372?”
Also via MCP, free with account