Security Controls Mapping Across Frameworks

Detailed control-by-control mapping tables showing how each compliance framework's requirements map to every other framework supported by Venvera.

ISO 27001 & SOC 2

The 24 compliance areas where ISO 27001 and SOC 2 controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

ISO 27001 & NIST CSF

The 28 compliance areas where ISO 27001 and NIST CSF controls overlap; mark one implemented and Venvera carries the status to the other.

1 min

ISO 27001 & DORA

The 21 compliance areas where ISO 27001 and DORA controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

ISO 27001 & NIS2

The 24 compliance areas where ISO 27001 and NIS2 controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

ISO 27001 & GDPR

The 8 compliance areas where ISO 27001 and GDPR controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

ISO 27001 & EU AI Act

The 1 compliance area where ISO 27001 and EU AI Act controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

SOC 2 & NIST CSF

The 27 compliance areas where SOC 2 and NIST CSF controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

SOC 2 & DORA

The 21 compliance areas where SOC 2 and DORA controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

SOC 2 & NIS2

The 23 compliance areas where SOC 2 and NIS2 controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

SOC 2 & GDPR

The 7 compliance areas where SOC 2 and GDPR controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

SOC 2 & EU AI Act

The 1 compliance area where SOC 2 and EU AI Act controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

NIST CSF & DORA

The 26 compliance areas where NIST CSF and DORA controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

NIST CSF & NIS2

The 29 compliance areas where NIST CSF and NIS2 controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

NIST CSF & GDPR

The 9 compliance areas where NIST CSF and GDPR controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

NIST CSF & EU AI Act

The 3 compliance areas where NIST CSF and EU AI Act controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

DORA & NIS2

The 27 compliance areas where DORA and NIS2 controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

DORA & GDPR

The 8 compliance areas where DORA and GDPR controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

DORA & EU AI Act

The 2 compliance areas where DORA and EU AI Act controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

NIS2 & GDPR

The 9 compliance areas where NIS2 and GDPR controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

NIS2 & EU AI Act

The 2 compliance areas where NIS2 and EU AI Act controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

GDPR & EU AI Act

The 2 compliance areas where GDPR and EU AI Act controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

CMMC 2.0 & NIST CSF

The 25 compliance areas where CMMC 2.0 and NIST CSF controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

CMMC 2.0 & ISO 27001

The 25 compliance areas where CMMC 2.0 and ISO 27001 controls overlap; mark one implemented and Venvera carries the status to the other.

1 min

CMMC 2.0 & SOC 2

The 22 compliance areas where CMMC 2.0 and SOC 2 controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

CMMC 2.0 & DORA

The 18 compliance areas where CMMC 2.0 and DORA controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

CMMC 2.0 & NIS2

The 16 compliance areas where CMMC 2.0 and NIS2 controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

CMMC 2.0 & GDPR

The 12 compliance areas where CMMC 2.0 and GDPR controls overlap, control by control; mark one implemented and Venvera carries the status to the other.

1 min

Saudi NCA ECC & ISO 27001

The 20 compliance areas where Saudi NCA ECC and ISO 27001 controls overlap; mark one implemented and Venvera carries the status to the other.

1 min

Saudi NCA ECC & NIST CSF

The 18 compliance areas where Saudi NCA ECC and NIST CSF controls overlap; mark one implemented and Venvera carries the status to the other.

1 min

DORA & NDPA

This table shows the compliance areas where DORA and the Nigeria Data Protection Act (NDPA) controls overlap. Both frameworks take part in Venvera's automatic cross-framework...

1 min

Solvency II Governance Overlays

How Solvency II Pillar 2 governance controls overlay ISO 27001, DORA and NIS2 controls, so evidence for one counts for the others once the status is set.

1 min