Sekit CSF · Network Security · Process
RCF-0188VPN management
VPN access is consistently provisioned, reviewed and removed when no longer required
Mapping at a glance
RCF-0188VPN managementNetwork Security · Process
RCF-0188 maps to 4 controls across the published frameworks. Open in the full graph →
Maps to ISO/IEC 27001:2022
Curated mapping with the reasoning, not just the codes.
A.5.18Access rightssupportsGranting VPN access only on approval and removing it the day someone leaves is A.5.18's provisioning and revocation requirement applied to remote network access specifically.A.6.7Remote workingsupportsThis process control provisions VPN access only on approval and removes it promptly when no longer needed, the lifecycle discipline A.6.7 expects of remote access.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
VPN and remote access configuration
How employees connect securely to company systems when working outside the office: VPN, remote-access rules and allowed devices.
From the Sekit evidence catalog
This topic through the other lenses
All Network Security controls
Ask Sekura: “What evidence proves RCF-0188?”
Also via MCP, free with account