14 frameworks127 controls

CROSSWALKFramework crosswalk

14 compliance frameworks mapped to ATT&CK. Click a cell to see overlapping controls and shared techniques. Authored by Adam Lundqvist.

Cells coloured by Jaccard similarity of technique sets.

01
DORAISO 27001PCI DSS v4CIS v8NIS2OWASP API Top 10OWASP LLM Top 10OWASP Top 10ISO 27701EU AI ActGDPRNIST CSFEU CRATIBER-EU
DORA
0.400.360.480.540.230.310.330.290.260.450.460.19
ISO 270010.40
0.330.530.440.300.290.340.280.250.400.360.14
PCI DSS v40.360.33
0.410.410.330.350.330.390.400.300.330.29
CIS v80.480.530.41
0.540.330.330.390.290.300.510.480.19
NIS20.540.440.410.54
0.330.360.320.320.270.450.470.22
OWASP API Top 100.230.300.330.330.33
0.360.350.260.200.250.310.11
OWASP LLM Top 100.310.290.350.330.360.36
0.390.390.310.370.390.21
OWASP Top 100.330.340.330.390.320.350.39
0.280.270.310.350.17
ISO 277010.290.280.390.290.320.260.390.28
0.300.380.260.29
EU AI Act0.260.250.400.300.270.200.310.270.30
0.400.310.27
GDPR0.450.400.300.510.450.250.370.310.380.40
0.440.21
NIST CSF0.460.360.330.480.470.310.390.350.260.310.44
0.18
EU CRA
TIBER-EU0.190.140.290.190.220.110.210.170.290.270.210.18

ISO 27001NIST CSF 35 shared techniques

Clear ✕
Control AControl BSharedExamples
A.5.7
Threat intelligence
PROTECT
PROTECT (PR) — Use safeguards to manage cyberse…
12T1190, T1566, T1059, T1547
A.8.16
Monitoring activities
PROTECT
PROTECT (PR) — Use safeguards to manage cyberse…
11T1059, T1547, T1068, T1070
A.8.21
Security of network services
GOVERN
GOVERN (GV) — Establish and monitor the cyberse…
10T1133, T1078, T1068, T1027
A.8.25
Secure development life cycle
GOVERN
GOVERN (GV) — Establish and monitor the cyberse…
10T1133, T1547.001, T1068, T1027
A.8.8
Management of technical vulnerabilities
PROTECT
PROTECT (PR) — Use safeguards to manage cyberse…
9T1190, T1068, T1059, T1027
A.8.9
Configuration management
GOVERN
GOVERN (GV) — Establish and monitor the cyberse…
9T1133, T1547.001, T1068, T1003
A.8.9
Configuration management
RESPOND
RESPOND (RS) — Take action regarding a detected…
9T1190, T1547.001, T1068, T1087.001
A.8.16
Monitoring activities
GOVERN
GOVERN (GV) — Establish and monitor the cyberse…
8T1078, T1133, T1068, T1003
A.8.26
Application security requirements
GOVERN
GOVERN (GV) — Establish and monitor the cyberse…
8T1078, T1068, T1055, T1133
A.8.28
Secure coding
GOVERN
GOVERN (GV) — Establish and monitor the cyberse…
8T1133, T1547.001, T1068, T1027
A.8.28
Secure coding
RESPOND
RESPOND (RS) — Take action regarding a detected…
8T1190, T1547.001, T1068, T1070.004
A.8.2
Privileged access rights
PROTECT
PROTECT (PR) — Use safeguards to manage cyberse…
8T1003, T1068, T1021, T1070
A.8.8
Management of technical vulnerabilities
GOVERN
GOVERN (GV) — Establish and monitor the cyberse…
8T1068, T1055, T1027, T1003
A.5.7
Threat intelligence
IDENTIFY
IDENTIFY (ID) — Understand organisational cyber…
7T1190, T1036, T1003, T1087
A.8.16
Monitoring activities
IDENTIFY
IDENTIFY (ID) — Understand organisational cyber…
7T1036, T1003, T1046, T1087
A.8.23
Web filtering
RESPOND
RESPOND (RS) — Take action regarding a detected…
7T1071.001, T1041, T1005, T1068
A.8.26
Application security requirements
PROTECT
PROTECT (PR) — Use safeguards to manage cyberse…
7T1190, T1059, T1068, T1003
A.8.2
Privileged access rights
IDENTIFY
IDENTIFY (ID) — Understand organisational cyber…
7T1003, T1053, T1021, T1087
A.5.7
Threat intelligence
GOVERN
GOVERN (GV) — Establish and monitor the cyberse…
6T1068, T1027, T1003, T1087
A.8.21
Security of network services
RESPOND
RESPOND (RS) — Take action regarding a detected…
6T1190, T1068, T1070.004, T1021.001
A.8.23
Web filtering
GOVERN
GOVERN (GV) — Establish and monitor the cyberse…
6T1041, T1027, T1005, T1068
A.8.25
Secure development life cycle
RESPOND
RESPOND (RS) — Take action regarding a detected…
6T1190, T1547.001, T1068, T1021.001
A.8.26
Application security requirements
IDENTIFY
IDENTIFY (ID) — Understand organisational cyber…
6T1190, T1003, T1083, T1021
A.8.26
Application security requirements
RESPOND
RESPOND (RS) — Take action regarding a detected…
6T1190, T1068, T1070.004, T1005
A.8.28
Secure coding
PROTECT
PROTECT (PR) — Use safeguards to manage cyberse…
6T1190, T1059, T1068, T1027

Showing top 25 of 83 control pairs.

Show non-overlap — ISO 27001 techniques NOT covered by NIST CSF (38)
T1003.002, T1003.003, T1003.005, T1012, T1016, T1021.002, T1021.003, T1027.011, T1036.001, T1040, T1048, T1048.001, T1071.004, T1078.002, T1078.003, T1078.004, T1087.004, T1090, T1098.001, T1110.002, T1136, T1136.003, T1189, T1203, T1204.001, T1526, T1530, T1535, T1537, T1543, T1543.003, T1548.001, T1548.002, T1552, T1553.004, T1567, T1573.001, T1574
Sourced from cs-graph compliance_mappings (127 controls across 14 frameworks). Jaccard computed from the union of applicable_techniques per control. Refreshed hourly via ISR. Curated by Adam Lundqvist, Founder at SQUR.
Framework crosswalk — Jaccard similarity grid | SQUR Knowledge Base