SekitCrosswalk
Sekit CSF · Governance & Risk · Process

RCF-0002Policy management

Security policies are consistently communicated and followed across the organisation

Maps to ISO/IEC 27001:2022

Curated mapping with the reasoning, not just the codes.

Maps to NIST CSF 2.0

Curated mapping with the reasoning, not just the codes.

Maps to ISO/IEC 42001:2023 — Annex A

Curated mapping with the reasoning, not just the codes.

Evidence that proves this control

What an auditor, or Sekit's evidence engine, asks for.

Information security policy
The written, leadership-approved document that sets the company's security rules: what is protected, how, and who is responsible.
From the Sekit evidence catalog

This topic through the other lenses

All Governance & Risk controls

Ask Sekura: “What evidence proves RCF-0002?”
Also via MCP, free with account