tags

Monthly Selected Authority Documents September 2025

Explore the top 50 most selected Authority Documents in the Common Controls Hub for September 2025, featuring key standards and regulations shaping cybersecurity and data privacy initiatives.

By Amanda B. · October 1, 2025

Discover the Top 50 Most Popular Authority Documents in the Common Controls Hub (CCH) for September.

See how often each document was assigned across user groups and compliance initiatives—insightful data to help guide your compliance strategy.

AD_nameAD_idAD_typeselectedgroupsinitiativesNIST CSF 2.03789International or National Standard38188ISO/IEC 27001:20223567International or National Standard30245ISO/IEC 27002:20223430International or National Standard272712PCI DSS Defined Approach Requirements v4.0.13987International or National Standard2461EU General Data Protection Regulation (GDPR)2802Regulation or Statute1920022NIST SP 800-53 Revision 5.1.13687International or National Standard1773SOC 2®, 20223647Audit Guideline1771NIST 800-171 Rev 33946International or National Standard1572Digital Operational Resilience Act3668Regulations14199HIPAA Security and Privacy Rule3986Regulations14169ISO/IEC 27017:2015(E)2838Self-Regulatory Body Requirement143112NIST AI 100-13591Best Practice Guideline1251CIS Controls, V83323Best Practice Guideline112311HIPAA3201Bill or Act11154NIST 800-53, v5.2.04137International or National Standard1100NIST SP 800-171, Protecting Controlled Unclassified Information in Nonfederal Systems and Organizations3134International or National Standard112311NIST SP 800-53 R53241International or National Standard114018CCM v4.03578Self-Regulatory Body Requirement1044Directive (EU) 2022/2555 on measures for a high common level of cybersecurity across the Union, 14 December, 20223714Regulatory Directive or Guidance10135Sarbanes-Oxley Act of 20023296Bill or Act1086CobiT102Safe Harbor91722COBIT 20193009Safe Harbor992Control Baselines for Information Systems and Organizations, NIST Special Publication 800-53B, Moderate Impact Baseline, October 20203275International or National Standard92310ISO 27001-20131367International or National Standard922924ISO/IEC 27001:2022/Amendment 1:20244103International or National Standard90023 NYCRR 5003686Regulations82418CIS Controls Version 8.13955Best Practice Guideline862CMMC Level 1, v2.03426Best Practice Guideline8145CMMC Level 2, v2.03427Best Practice Guideline8166CSF V1.13709International or National Standard860Insurance Data Security Model Law, NAIC MDL-6682920Best Practice Guideline897ISO 42001:20234062International or National Standard821ISO 9001:20152942International or National Standard8286Trust Services Criteria (with Revised Points of Focus – 2022)3609Self-Regulatory Body Requirement812345 CFR Part 1703719Regulations760Cloud Controls Matrix, v4.03303Self-Regulatory Body Requirement7121ISO/IEC 27018:20193429International or National Standard792ITIL Foundation 43272Best Practice Guideline701NIST AI 600-13990International or National Standard743PCI DSS Defined Approach Requirements, Version 4.03444International or National Standard718623 NYCRR 5002895Regulation or Statute6502245 CFR Part 160

Ready to see your fabric?

Request a demo of ControlSight and see how Unified Compliance connects mandates, policies, and controls into one living fabric.