Sekit CSF · Identity & Access Management · Technical
RCF-0072Privileged access management
Technical tools control and monitor all use of privileged accounts
Mapping at a glance
RCF-0072Privileged access managementIdentity & Access Management · Technical
RCF-0072 maps to 8 controls across the published frameworks. +3 more in the table below. Open in the full graph →
Maps to ISO/IEC 27001:2022
Curated mapping with the reasoning, not just the codes.
A.8.2Privileged access rightssupportsVaulting admin credentials and alerting on unusual administrative activity gives A.8.2 the technical constraint and visibility it requires over privileged sessions.A.8.15LoggingsupportsTechnical controls that log and alert on privileged session activity implement A.8.15's logging requirement for the accounts capable of the most damage.A.8.16Monitoring activitiessupportsWatching privileged sessions and alerting on unusual administrative activity is monitoring focused on the accounts capable of the most damage, central to A.8.16.A.8.18Use of privileged utility programssupportsVaulting admin credentials and alerting on unusual administrative activity constrains and watches the privileged sessions A.8.18 is concerned with keeping under control.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
Maps to Cyber Essentials
Curated mapping with the reasoning, not just the codes.
This topic through the other lenses
All Identity & Access Management controls
Ask Sekura: “What evidence proves RCF-0072?”
Also via MCP, free with account