Cybersecurity Frameworks
ControlMap tracks 49 cybersecurity controls across 9 major frameworks. Each framework page shows coverage analysis, control mappings by domain, and gap identification.
NIST Cybersecurity Framework 2.0
The NIST Cybersecurity Framework (CSF) 2.0 provides a comprehensive set of guidelines for managing cybersecurity risk. O...
100%
Coverage
Coverage
49
Covered
Covered
0
Gaps
Gaps
ISO/IEC 27001:2022
ISO/IEC 27001:2022 is the international standard for information security management systems (ISMS). It specifies requir...
100%
Coverage
Coverage
49
Covered
Covered
0
Gaps
Gaps
CIS Controls v8
The CIS Critical Security Controls v8 are a prioritized set of best practices for defending against the most common cybe...
90%
Coverage
Coverage
44
Covered
Covered
5
Gaps
Gaps
SOC 2 Type II
SOC 2 is an auditing framework developed by the AICPA that evaluates an organization's controls related to security, ava...
100%
Coverage
Coverage
49
Covered
Covered
0
Gaps
Gaps
PCI DSS v4.0
The Payment Card Industry Data Security Standard (PCI DSS) v4.0 is a set of security requirements for organizations that...
100%
Coverage
Coverage
49
Covered
Covered
0
Gaps
Gaps
CMMC Level 2
The Cybersecurity Maturity Model Certification (CMMC) Level 2 aligns with NIST SP 800-171 and is required for Department...
94%
Coverage
Coverage
46
Covered
Covered
3
Gaps
Gaps
NIST SP 800-53 Rev 5
NIST Special Publication 800-53 Revision 5 provides a comprehensive catalog of security and privacy controls for federal...
100%
Coverage
Coverage
49
Covered
Covered
0
Gaps
Gaps
HIPAA Security Rule
The HIPAA Security Rule (45 CFR Part 164) establishes national standards for protecting electronic protected health info...
94%
Coverage
Coverage
46
Covered
Covered
3
Gaps
Gaps
GDPR
The General Data Protection Regulation (EU 2016/679) is the European Union's comprehensive data protection law governing...
96%
Coverage
Coverage
47
Covered
Covered
2
Gaps
Gaps
Compare Frameworks
See side-by-side comparisons showing shared controls, unique coverage, and gap analysis between any two frameworks.
NIST CSF 2.0 vs ISO 27001NIST CSF 2.0 vs CIS v8NIST CSF 2.0 vs SOC 2NIST CSF 2.0 vs PCI DSSNIST CSF 2.0 vs CMMCNIST CSF 2.0 vs 800-53NIST CSF 2.0 vs HIPAANIST CSF 2.0 vs GDPRISO 27001 vs CIS v8ISO 27001 vs SOC 2ISO 27001 vs PCI DSSISO 27001 vs CMMCISO 27001 vs 800-53ISO 27001 vs HIPAAISO 27001 vs GDPRCIS v8 vs SOC 2CIS v8 vs PCI DSSCIS v8 vs CMMCCIS v8 vs 800-53CIS v8 vs HIPAACIS v8 vs GDPRSOC 2 vs PCI DSSSOC 2 vs CMMCSOC 2 vs 800-53SOC 2 vs HIPAASOC 2 vs GDPRPCI DSS vs CMMCPCI DSS vs 800-53PCI DSS vs HIPAAPCI DSS vs GDPRCMMC vs 800-53CMMC vs HIPAACMMC vs GDPR800-53 vs HIPAA800-53 vs GDPRHIPAA vs GDPR