Security Controls Mapping Across Frameworks
Detailed control-by-control mapping tables showing how each compliance framework's requirements map to every other framework supported by Venvera.
ISO 27001 & SOC 2
The 24 compliance areas where ISO 27001 and SOC 2 controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
ISO 27001 & NIST CSF
The 28 compliance areas where ISO 27001 and NIST CSF controls overlap; mark one implemented and Venvera carries the status to the other.
ISO 27001 & DORA
The 21 compliance areas where ISO 27001 and DORA controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
ISO 27001 & NIS2
The 24 compliance areas where ISO 27001 and NIS2 controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
ISO 27001 & GDPR
The 8 compliance areas where ISO 27001 and GDPR controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
ISO 27001 & EU AI Act
The 1 compliance area where ISO 27001 and EU AI Act controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
SOC 2 & NIST CSF
The 27 compliance areas where SOC 2 and NIST CSF controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
SOC 2 & DORA
The 21 compliance areas where SOC 2 and DORA controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
SOC 2 & NIS2
The 23 compliance areas where SOC 2 and NIS2 controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
SOC 2 & GDPR
The 7 compliance areas where SOC 2 and GDPR controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
SOC 2 & EU AI Act
The 1 compliance area where SOC 2 and EU AI Act controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
NIST CSF & DORA
The 26 compliance areas where NIST CSF and DORA controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
NIST CSF & NIS2
The 29 compliance areas where NIST CSF and NIS2 controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
NIST CSF & GDPR
The 9 compliance areas where NIST CSF and GDPR controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
NIST CSF & EU AI Act
The 3 compliance areas where NIST CSF and EU AI Act controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
DORA & NIS2
The 27 compliance areas where DORA and NIS2 controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
DORA & GDPR
The 8 compliance areas where DORA and GDPR controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
DORA & EU AI Act
The 2 compliance areas where DORA and EU AI Act controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
NIS2 & GDPR
The 9 compliance areas where NIS2 and GDPR controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
NIS2 & EU AI Act
The 2 compliance areas where NIS2 and EU AI Act controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
GDPR & EU AI Act
The 2 compliance areas where GDPR and EU AI Act controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
CMMC 2.0 & NIST CSF
The 25 compliance areas where CMMC 2.0 and NIST CSF controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
CMMC 2.0 & ISO 27001
The 25 compliance areas where CMMC 2.0 and ISO 27001 controls overlap; mark one implemented and Venvera carries the status to the other.
CMMC 2.0 & SOC 2
The 22 compliance areas where CMMC 2.0 and SOC 2 controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
CMMC 2.0 & DORA
The 18 compliance areas where CMMC 2.0 and DORA controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
CMMC 2.0 & NIS2
The 16 compliance areas where CMMC 2.0 and NIS2 controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
CMMC 2.0 & GDPR
The 12 compliance areas where CMMC 2.0 and GDPR controls overlap, control by control; mark one implemented and Venvera carries the status to the other.
Saudi NCA ECC & ISO 27001
The 20 compliance areas where Saudi NCA ECC and ISO 27001 controls overlap; mark one implemented and Venvera carries the status to the other.
Saudi NCA ECC & NIST CSF
The 18 compliance areas where Saudi NCA ECC and NIST CSF controls overlap; mark one implemented and Venvera carries the status to the other.
DORA & NDPA
This table shows the compliance areas where DORA and the Nigeria Data Protection Act (NDPA) controls overlap. Both frameworks take part in Venvera's automatic cross-framework...
Solvency II Governance Overlays
How Solvency II Pillar 2 governance controls overlay ISO 27001, DORA and NIS2 controls, so evidence for one counts for the others once the status is set.