Showing 6 frameworks
🛡️
Active

NIST Cybersecurity Framework

A comprehensive set of guidelines for managing cybersecurity risk. Covers Identify, Protect, Detect, Respond, and Recover functions.

Risk Management Federal Standard Voluntary
🌐
Active
\n

ISO/IEC 27001

International standard for Information Security Management Systems (ISMS). Focuses on systematic approach to managing sensitive company information.

ISMS Certification Global
🎯
Available

MITRE ATT&CK Framework

Global knowledge base of adversary tactics and techniques based on real-world observations. Essential for threat modeling and red teaming.

Adversary Behavior Red/Blue Team TTPs
🔒
Active

CIS Critical Security Controls

Actionable cybersecurity best practices to help defend against the most prevalent and impactful cyber threats.

Best Practices Implementation Groups SANS
📊
Under Review

SOC 2 Type II

Compliance report covering Security, Availability, Processing Integrity, Confidentiality, and Privacy. Crucial for SaaS and cloud providers.

AICPA Audit Report Trusted Criteria
🇪🇺
Available

GDPR Data Protection

European Union regulation on data protection and privacy for individuals within the EU. Mandates strict consent, breach notification, and DPIAs.

Privacy Law EU Regulation DPO Required