Sekit CSF · Endpoint Security · Process
RCF-0158Removable media control
Removable media use is consistently monitored and unauthorised devices are reported and removed
Mapping at a glance
RCF-0158Removable media controlEndpoint Security · Process
RCF-0158 maps to 4 controls across the published frameworks. Open in the full graph →
Maps to ISO/IEC 27001:2022
Curated mapping with the reasoning, not just the codes.
A.7.10Storage mediasupportsThis process control watches for removable media use and follows up on unapproved devices, the ongoing enforcement A.7.10's media-use restriction needs.A.8.16Monitoring activitiessupportsWatching for removable media use and following up unapproved devices is monitoring activity focused on a specific unusual-behavior pattern A.8.16 cares about.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
Local admin and removable-media controls
The rules on who may have administrator rights on their own device and on the use of USB sticks and external drives.
From the Sekit evidence catalog
This topic through the other lenses
All Endpoint Security controls
Ask Sekura: “What evidence proves RCF-0158?”
Also via MCP, free with account