Sekit CSF · Endpoint Security · Process
RCF-0164Disk encryption
Disk encryption is consistently enabled and verified on all devices within scope
Mapping at a glance
RCF-0164Disk encryptionEndpoint Security · Process
RCF-0164 maps to 4 controls across the published frameworks. Open in the full graph →
Maps to ISO/IEC 27001:2022 · Annex A controls
Curated mapping with the reasoning, not just the codes.
A.8.1User endpoint devicessupportsThe disk encryption process facet verifies encryption is enabled and recovery keys are escrowed on every in-scope device, the operational check A.8.1 needs.A.8.24Use of cryptographysupportsThe process facet turns on and verifies full disk encryption on every in-scope device and escrows recovery keys the company can retrieve.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
Disk encryption evidence
The proof that laptops and devices handling sensitive data have full-disk encryption (BitLocker, FileVault or similar).
From the Sekit evidence catalog
This topic through the other lenses
All Endpoint Security controls
Ask Sekura: “What evidence proves RCF-0164?”
Connect your AI · free MCP
https://sekit.ai/api/mcp/crosswalk- In Claude or ChatGPT, add a custom connector and paste this URL.
- Sign in with your email to finish. Free, read-only, no organization required.