Sekit CSF · Identity & Access Management · Process
RCF-0074SSO & federation
New applications are integrated with the central identity system before deployment
Mapping at a glance
RCF-0074SSO & federationIdentity & Access Management · Process
A.5.8Information security in project managementISO/IEC 27001:2022 · Annex A controlsA.5.15Access controlISO/IEC 27001:2022 · Annex A controlsA.5.16Identity managementISO/IEC 27001:2022 · Annex A controlsPR.AA-01Identities and credentials managedNIST CSF 2.0PR.AA-02Identities proofed and boundNIST CSF 2.0
RCF-0074 maps to 5 controls across the published frameworks. Open in the full graph →
Maps to ISO/IEC 27001:2022 · Annex A controls
Curated mapping with the reasoning, not just the codes.
A.5.8Information security in project managementsupportsThis process control connects every new application to the central identity provider before deployment, a concrete security step A.5.8 expects projects to complete.A.5.15Access controlenablesConnecting each new application to the identity provider before staff start using it means access control applies from day one instead of being retrofitted later.A.5.16Identity managementsupportsConnecting a new application to the identity provider as a routine step of adoption means it inherits the account lifecycle from day one, matching A.5.16's full-lifecycle scope.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
This topic through the other lenses
All Identity & Access Management controls
Ask Sekura: “What evidence proves RCF-0074?”
Connect your AI · free MCP
https://sekit.ai/api/mcp/crosswalk- In Claude or ChatGPT, add a custom connector and paste this URL.
- Sign in with your email to finish. Free, read-only, no organization required.