Sekit CSF · Governance & Risk · Policy
RCF-0016Regulatory compliance
The company formally tracks applicable laws and regulations
Mapping at a glance
RCF-0016Regulatory complianceGovernance & Risk · Policy
A.5.31Legal, statutory, regulatory and contractual requirementsISO/IEC 27001:2022GV.OC-01Organizational mission understoodNIST CSF 2.0GV.OC-02Stakeholder needs understoodNIST CSF 2.0GV.OC-03Legal and regulatory requirements understoodNIST CSF 2.0GV.OC-04Critical objectives and services understoodNIST CSF 2.0
RCF-0016 maps to 7 controls across the published frameworks. +2 more in the table below. Open in the full graph →
Maps to ISO/IEC 27001:2022
Curated mapping with the reasoning, not just the codes.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
GV.OC-01Organizational mission understoodGV.OC-02Stakeholder needs understoodGV.OC-03Legal and regulatory requirements understoodGV.OC-04Critical objectives and services understoodGV.OC-05Dependencies understood
Maps to ISO/IEC 42001:2023 — Annex A
Curated mapping with the reasoning, not just the codes.
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
Regulatory obligations register
The list of laws, regulations and frameworks that apply to the company (e.g. GDPR, sector rules) and how they map to your internal controls.
From the Sekit evidence catalog
This topic through the other lenses
All Governance & Risk controls
Ask Sekura: “What evidence proves RCF-0016?”
Also via MCP, free with account