Sekit CSF · Cloud Security · Technical
RCF-0333Shared responsibility model
Technical controls fill the security gaps that fall on the company's side of the cloud shared responsibility boundary
Mapping at a glance
RCF-0333Shared responsibility modelCloud Security · Technical
A.5.23Information security for use of cloud servicesISO/IEC 27001:2022 · Annex A controlsA.8.9Configuration managementISO/IEC 27001:2022 · Annex A controlsGV.OC-04Critical objectives and services understoodNIST CSF 2.0GV.SC-01Supply chain risk program establishedNIST CSF 2.0GV.SC-05Supply chain requirements in contractsNIST CSF 2.0
RCF-0333 maps to 7 controls across the published frameworks. +2 more in the table below. Open in the full graph →
Maps to ISO/IEC 27001:2022 · Annex A controls
Curated mapping with the reasoning, not just the codes.
A.5.23Information security for use of cloud servicesenablesThe technical facet enables the customer-side of the cloud boundary to be defended in practice, with tenant hardening, backup, and logging that no provider certificate replaces.A.8.9Configuration managementsupportsDeploying tenant hardening, backup, logging and secure configuration for everything on the company's side of the cloud boundary applies A.8.9's discipline to shared-responsibility gaps specifically.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
GV.OC-04Critical objectives and services understoodGV.SC-01Supply chain risk program establishedGV.SC-05Supply chain requirements in contracts
Maps to Cyber Essentials
Curated mapping with the reasoning, not just the codes.
This topic through the other lenses
All Cloud Security controls
Ask Sekura: “What evidence proves RCF-0333?”
Connect your AI · free MCP
https://sekit.ai/api/mcp/crosswalk- In Claude or ChatGPT, add a custom connector and paste this URL.
- Sign in with your email to finish. Free, read-only, no organization required.