Sekit CSF · Endpoint Security · Process
RCF-0164Disk encryption
Disk encryption is consistently enabled and verified on all devices within scope
Mapping at a glance
RCF-0164Disk encryptionEndpoint Security · Process
RCF-0164 maps to 4 controls across the published frameworks. Open in the full graph →
Maps to ISO/IEC 27001:2022
Curated mapping with the reasoning, not just the codes.
A.8.1User endpoint devicessupportsThe disk encryption process facet verifies encryption is enabled and recovery keys are escrowed on every in-scope device, the operational check A.8.1 needs.A.8.24Use of cryptographysupportsThe process facet turns on and verifies full disk encryption on every in-scope device and escrows recovery keys the company can retrieve.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
Disk encryption evidence
The proof that laptops and devices handling sensitive data have full-disk encryption (BitLocker, FileVault or similar).
From the Sekit evidence catalog
This topic through the other lenses
All Endpoint Security controls
Ask Sekura: “What evidence proves RCF-0164?”
Also via MCP, free with account