|
controlSI-20

Tainting (SI-20)

Embed data or capabilities in the following systems or system components to determine if organizational data has been exfiltrated or improperly removed from the organization: [organization-defined].

integritymalwareflaw-remediationmonitoring

Why These Connect

Maps To1

These are equivalent or closely aligned requirements in other frameworks.

Supports4

These related controls work together — a change to one may affect the others.

Cross-Framework Mappings(1)

ISO 27001ISO/IEC 27001:20221 mappingFinal
NIST OLIR informative reference — SP 800-53 Rev 5 to ISO/IEC 27001:2022