Sekit CSF · Network Security · Technical
RCF-0171Network segmentation
Technical controls enforce network boundaries and restrict traffic between zones based on policy
Mapping at a glance
RCF-0171Network segmentationNetwork Security · Technical
RCF-0171 maps to 5 controls across the published frameworks. Open in the full graph →
Maps to ISO/IEC 27001:2022
Curated mapping with the reasoning, not just the codes.
A.8.20Networks securitysupportsEnforcing zone boundaries with VLANs and firewall rules blocking traffic unless explicitly allowed is the segmentation slice of A.8.20, which also covers encrypted transit, remote access and wireless protection.A.8.22Segregation of networksenablesThe technical facet enables VLANs and firewall rules to enforce zone boundaries by default-deny, the mechanism that turns A.8.22's segmentation policy into a real barrier.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
Maps to Cyber Essentials
Curated mapping with the reasoning, not just the codes.
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
Network architecture diagram
The drawing or schematic showing how the company's systems connect: networks, firewalls, segments, and links to the internet and the cloud.
From the Sekit evidence catalog
This topic through the other lenses
All Network Security controls
Ask Sekura: “What evidence proves RCF-0171?”
Also via MCP, free with account