Sekit CSF · Data Security · Technical
RCF-0096Encryption at rest
Technical controls enforce encryption at rest on all sensitive data stores
Mapping at a glance
RCF-0096Encryption at restData Security · Technical
RCF-0096 maps to 4 controls across the published frameworks. Open in the full graph →
Maps to ISO/IEC 27001:2022
Curated mapping with the reasoning, not just the codes.
A.8.1User endpoint devicessupportsThe encryption-at-rest technical facet enforces full-disk encryption on endpoint devices, addressing the data-protection half of what A.8.1 requires for user devices.A.8.24Use of cryptographysupportsThe technical facet turns on and centrally enforces storage encryption everywhere sensitive data rests, from full-disk encryption to encrypted backups.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
Encryption standards evidence
The proof that sensitive data is encrypted when stored (databases, storage) and when transmitted (encrypted connections).
From the Sekit evidence catalog
This topic through the other lenses
All Data Security controls
Ask Sekura: “What evidence proves RCF-0096?”
Also via MCP, free with account