|
control enhancementSC-28(1)

Cryptographic Protection (SC-28(1))

Implement cryptographic mechanisms to prevent unauthorized disclosure and modification of the following information at rest on [organization-defined]: [organization-defined].

Security Baselines

MODERATEHIGHLOW
communicationsencryptionboundary-protectionnetworkenhancement

Why These Connect

Maps To1

These are equivalent or closely aligned requirements in other frameworks.

Enhances1

These enhancements add specific capabilities or refinements to the base control.

Baselined In2

This control is included in the linked security baseline (LOW, MODERATE, or HIGH).

Cross-Framework Mappings(1)

ISO 27001ISO/IEC 27001:20221 mappingFinal
NIST OLIR informative reference — SP 800-53 Rev 5 to ISO/IEC 27001:2022

Organization-Defined Parameters(2)

Assignmentorganization-defined information
Assignmentorganization-defined system components or media