<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:g-custom="http://base.google.com/cns/1.0" version="2.0">
  <channel>
    <title>Razilio 2022</title>
    <link>https://www.razil.io</link>
    <description />
    <atom:link href="https://www.razil.io/feed/rss2" type="application/rss+xml" rel="self" />
    <item>
      <title>NIST CSF 2.0 to ISO 27001:2022 Annexure A Mapping</title>
      <link>https://www.razil.io/post/nist-csf-2-0-to-iso-27001-2022-annexure-a-mapping</link>
      <description>We recently conducted a NIST CSF 2.0 capability assessment for a client and, as part of the engagement, needed to map their existing...</description>
      <content:encoded>&lt;div data-rss-type="text"&gt;&#xD;
  &lt;p&gt;&#xD;
    &lt;span&gt;&#xD;
      
            We recently conducted a NIST CSF 2.0 capability assessment for a client and, as part of the engagement, needed to map their existing framework, ISO 27001:2022. Despite extensive searching, we were unable to find an existing mapping. We even tried using ChatGPT and Gemini for assistance, but both produced significant AI hallucinations. As a result, we undertook the task ourselves.
           &#xD;
      &lt;br/&gt;&#xD;
    &lt;/span&gt;&#xD;
  &lt;/p&gt;&#xD;
&lt;/div&gt;&#xD;
&lt;div data-rss-type="text"&gt;&#xD;
  &lt;p&gt;&#xD;
    &lt;span&gt;&#xD;
      
            To save others time, we’ve attached the NIST CSF 2.0 to ISO 27001:2022 Annexure A mapping to this post. Please use it at your own
           &#xD;
      &lt;br/&gt;&#xD;
      
           discretion and assess its completeness.
           &#xD;
      &lt;br/&gt;&#xD;
    &lt;/span&gt;&#xD;
  &lt;/p&gt;&#xD;
&lt;/div&gt;&#xD;
&lt;div data-rss-type="text"&gt;&#xD;
  &lt;p&gt;&#xD;
    &lt;span&gt;&#xD;
      
            A big thanks to Iris, Brad, Akshaye and Purab for their hard work in compiling this mapping. 
           &#xD;
      &lt;br/&gt;&#xD;
    &lt;/span&gt;&#xD;
  &lt;/p&gt;&#xD;
&lt;/div&gt;&#xD;
&lt;div data-rss-type="text"&gt;&#xD;
  &lt;p&gt;&#xD;
    &lt;span&gt;&#xD;
      
           Note 24 April 2025: A new mapping has been uploaded to meet NIST OLIR requirements
          &#xD;
    &lt;/span&gt;&#xD;
  &lt;/p&gt;&#xD;
  &lt;p&gt;&#xD;
    &lt;span&gt;&#xD;
      
            Note 23 May 2024: A new mapping has been uploaded to address some previous mapping issues. 
          &#xD;
    &lt;/span&gt;&#xD;
  &lt;/p&gt;&#xD;
  &lt;p&gt;&#xD;
    &lt;span&gt;&#xD;
      &lt;br/&gt;&#xD;
    &lt;/span&gt;&#xD;
  &lt;/p&gt;&#xD;
&lt;/div&gt;</content:encoded>
      <pubDate>Tue, 21 May 2024 00:35:00 GMT</pubDate>
      <guid>https://www.razil.io/post/nist-csf-2-0-to-iso-27001-2022-annexure-a-mapping</guid>
      <g-custom:tags type="string" />
    </item>
  </channel>
</rss>
