Monthly Selected Authority Documents February, 2024
Here is a list of the 50 most selected Authority Documents in the Common Controls Hub this past month. We also list how many groups each Authority Document has been assigned to and how many initiatives it has been assigned to.
AD Common NameAD TypeSelectedGroupsInitiativesEU General Data Protection Regulation (GDPR)Regulation or Statute4118519NIST SP 800-53 R5International or National Standard402717ISO/IEC 27001:2022International or National Standard39104CIS Controls, V8Best Practice Guideline32139ISO/IEC 27002:2022International or National Standard281010ISO/IEC 27701:2019International or National Standard241910NIST SP 800-53 Revision 5.1.1International or National Standard2400ISO 27001-2013International or National Standard232172323 NYCRR 500Regulations2011CobiTSafe Harbor201682COSO Internal Control - Integrated FrameworkSelf-Regulatory Body Requirement20248NIST CSF 1.1International or National Standard20612323 NYCRR 500Regulation or Statute19286NIST AI 100-1Best Practice Guideline1910California Consumer Privacy Act of 2018Bill or Act18452CMMC Level 2, v2.0Best Practice Guideline18106Digital Operational Resilience ActRegulations1811hipaa security ruleRegulation or Statute1851Cloud Controls Matrix, v4.0Self-Regulatory Body Requirement1661California Privacy Rights Act (CPRA)Bill or Act1542CSF V1.1International or National Standard1500NIST SP 800-171, Protecting Controlled Unclassified Information in Nonfederal Systems and OrganizationsInternational or National Standard15169PCI DSS Defined Approach Requirements, Version 4.0International or National Standard1595Sarbanes-Oxley Act of 2002Bill or Act1556Trust Services Criteria (with Revised Points of Focus - 2022)Self-Regulatory Body Requirement1553AICPA Reporting on Controls at a Service Organization SOC-2Safe Harbor141447FedRAMP Baseline Security ControlsAudit Guideline141290ISO 9001:2015International or National Standard14226Directive (EU) 2022/2555 on measures for a high common level of cybersecurity across the Union, 14 December, 2022Regulatory Directive or Guidance1311NIST SP 800-53 R4International or National Standard1353AICPA/CICA Privacy Management FrameworkBest Practice Guideline1200Cross Border Privacy AssessmentBest Practice Guideline1231ISO 22301:2019(E)International or National Standard1212NIST SP 800 66Safe Harbor12311Security and Privacy Controls for Federal Information Systems and Organizations, NIST SP 800-53, Moderate Impact Baseline, Revision 4International or National Standard1260SOC 2®, 2022Audit Guideline1200SSAE No. 16 Reporting on Controls at a Service Organization SOC-1Safe Harbor1293AICPA PrivacySafe Harbor1161CMMC Level 1, v2.0Best Practice Guideline1185Cyber Essentials Scheme (CES) QuestionnaireBest Practice Guideline1175Harmonized Rules On Artificial Intelligence (Artificial Intelligence Act) and Ameding Certain Union Legislative Acts, European CommissionBest Practice Guideline1131ISO 22301- Societal Security - Business Continuity Management Systems - RequirementsInternational or National Standard11191ISO 31000 R 2009International or National Standard111701ISO 31000:2018International or National Standard11247PCI DSS Testing Procedures v3.2Contractual Obligation11292PCI DSS v3.2.1Contractual Obligation1184Personal Information Protection Law of the People's Republic of ChinaBill or Act1121COBIT 2019Safe Harbor1052Cyber Essentials Self-Assessment, Version 13Best Practice Guideline1055EU-US Privacy Shield Framework Principles Annex IIRegulation or Statute1020{{ include_custom_fonts({"Aeonik":["Regular","Bold"]}) }}
Request a demo of ControlSight and see how Unified Compliance connects mandates, policies, and controls into one living fabric.