Sekit CSF · Vulnerability & Configuration · Process
RCF-0236Penetration testing
Penetration tests are consistently scoped, conducted and findings are tracked to remediation
Mapping at a glance
RCF-0236Penetration testingVulnerability & Configuration · Process
RCF-0236 maps to 4 controls across the published frameworks. Open in the full graph →
Maps to ISO/IEC 27001:2022
Curated mapping with the reasoning, not just the codes.
A.8.8Management of technical vulnerabilitiessupportsThe process facet scopes each test deliberately, runs it with a qualified tester and tracks every finding to closure or formal acceptance.A.8.34Protection of information systems during audit testingsupportsThe Sekit process control scopes every penetration test deliberately with a qualified tester and tracks findings to closure, the disciplined testing approach this ISO control requires to protect systems during audit activity.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
This topic through the other lenses
All Vulnerability & Configuration controls
Ask Sekura: “What evidence proves RCF-0236?”
Also via MCP, free with account