127 indexed

COMPLIANCECompliance controls

127 controls across 14 compliance frameworks, grouped by framework. For cross-framework Jaccard overlap see /explore/crosswalk. Authored by Adam Lundqvist.

6 in NIST CSF · 127 total

IDTitleSummary
NIST_CSF-DEDETECT (DE) — Find and analyse possible cybersecurity attacks and compromises
NIST CSFpentest:high
Possible cybersecurity attacks and compromises are found and analysed. DETECT enables the timely discovery and analysis of anomalies, indicators of compromise,…
NIST_CSF-GVGOVERN (GV) — Establish and monitor the cybersecurity risk management strategy
NIST CSFpentest:low
The organisation's cybersecurity risk management strategy, expectations, and policy are established, communicated, and monitored. GOVERN provides outcomes to i…
NIST_CSF-IDIDENTIFY (ID) — Understand organisational cybersecurity risk
NIST CSFpentest:medium
The organisation's current cybersecurity risks are understood. Identifying assets, suppliers, and related cybersecurity risks enables an organisation to focus …
NIST_CSF-PRPROTECT (PR) — Use safeguards to manage cybersecurity risks
NIST CSFpentest:high
Safeguards to manage the organisation's cybersecurity risks are used. Once assets and risks are identified and prioritised, PROTECT supports the ability to sec…
NIST_CSF-RCRECOVER (RC) — Restore assets and operations affected by a cybersecurity incident
NIST CSFpentest:medium
Assets and operations affected by a cybersecurity incident are restored. RECOVER supports the timely restoration of normal operations to reduce the effects of …
NIST_CSF-RSRESPOND (RS) — Take action regarding a detected cybersecurity incident
NIST CSFpentest:high
Actions regarding a detected cybersecurity incident are taken. RESPOND supports the ability to contain the effects of cybersecurity incidents.
Sourced from EUR-Lex (DORA, NIS2, GDPR, AI Act, CRA), ISO, NIST, OWASP, CIS, PCI SSC, ENISA TIBER-EU. Curated by Adam Lundqvist, Founder at SQUR.
Compliance controls — by framework | SQUR Knowledge Base