Sekit CSF · Asset Management · Technical
RCF-0045Data inventory
Technical tools automatically discover and classify sensitive data across systems and storage locations
Mapping at a glance
RCF-0045Data inventoryAsset Management · Technical
RCF-0045 maps to 6 controls across the published frameworks. +1 more in the table below. Open in the full graph →
Maps to ISO/IEC 27001:2022
Curated mapping with the reasoning, not just the codes.
A.5.9Inventory of information and other associated assetssupportsThis technical control uses automated discovery to find sensitive data in unexpected places, keeping the data inventory A.5.9 requires grounded in reality.A.5.12Classification of informationenablesAutomated discovery finds sensitive data sitting in unexpected places, giving classification something to act on beyond what people remember to tag by hand.A.8.12Data leakage preventionenablesThe data discovery technical facet enables sensitive data sitting in unexpected endpoints or shared storage to be found and classified, the visibility A.8.12 needs before leakage can be prevented.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
ID.AM-03Network data flows mappedID.AM-05Assets prioritized by criticalityID.AM-07Data inventory maintained
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
Data inventory and classification
The record of the personal and sensitive data the company holds, where it lives and how it is classified by sensitivity.
From the Sekit evidence catalog
This topic through the other lenses
All Asset Management controls
Ask Sekura: “What evidence proves RCF-0045?”
Also via MCP, free with account