Sekit CSF · Endpoint Security · Process
RCF-0167Local admin control
Local administrator access is consistently limited to authorised personnel and reviewed regularly
Mapping at a glance
RCF-0167Local admin controlEndpoint Security · Process
RCF-0167 maps to 5 controls across the published frameworks. Open in the full graph →
Maps to ISO/IEC 27001:2022
Curated mapping with the reasoning, not just the codes.
A.5.18Access rightsrelatedKeeping the local admin list approved and current is A.5.18's provisioning-and-review discipline applied to one specific, high-impact access right rather than access rights generally.A.8.2Privileged access rightssupportsKeeping local admin rights limited to a current, approved list and re-verifying it regularly operationalizes A.8.2's expectation that privilege stays tightly scoped.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
Maps to Cyber Essentials
Curated mapping with the reasoning, not just the codes.
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
Local admin and removable-media controls
The rules on who may have administrator rights on their own device and on the use of USB sticks and external drives.
From the Sekit evidence catalog
This topic through the other lenses
All Endpoint Security controls
Ask Sekura: “What evidence proves RCF-0167?”
Also via MCP, free with account