Control domain
Cryptography & data protection
Protecting the confidentiality and integrity of data at rest and in transit through cryptography.
14 requirements across 13frameworks & regulations.
- ISO 27001EquivalentA.8.24 Use of cryptography
- NIST CSF 2.0EquivalentPR.DS-01 Confidentiality of data-at-rest protected
- CIS Controls v8Equivalent3.11 Encrypt sensitive data at rest
- NIST 800-53EquivalentSC-28 Protection of information at rest
- NIST 800-171Equivalent3.13.11 Employ FIPS-validated cryptography
- NIS2EquivalentArt. 21(2)(h) Cryptography and encryption
- PCI DSSEquivalentReq. 3 Protect stored account data
- HIPAAEquivalent§164.312(e)(1) Transmission security
- GLBAEquivalent§314.4(c)(3) Encryption of customer information
- SOC 2PartialCC6.7 Restricting data transmission
- GDPRPartialArt. 32 Security of processing
- LGPDPartialArt. 46 Security measures
- DORAPartialArt. 9 Protection and prevention