Sekit CSF · Network Security · Technical
RCF-0177Secure DNS
Technical controls implement DNS filtering, DNSSEC and monitoring to detect and block malicious domains
Mapping at a glance
RCF-0177Secure DNSNetwork Security · Technical
RCF-0177 maps to 4 controls across the published frameworks. Open in the full graph →
Maps to ISO/IEC 27001:2022
Curated mapping with the reasoning, not just the codes.
A.8.20Networks securitysupportsFiltering DNS resolution and locking public DNS records with registrar protections is a specific technical layer of the network protection A.8.20 requires.A.8.23Web filteringsupportsThe secure DNS technical facet points every device at a resolver that blocks known-malicious domains and locks the company's own DNS records, the core mechanism behind A.8.23's web filtering control.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
TLS and secure-DNS review
The proof that the company's websites and services use strong encryption (up-to-date HTTPS/TLS) and that DNS is protected against tampering.
From the Sekit evidence catalog
This topic through the other lenses
All Network Security controls
Ask Sekura: “What evidence proves RCF-0177?”
Also via MCP, free with account