This table shows the 9 compliance areas where NIST CSF and GDPR controls overlap. When you mark a control as implemented in either framework, Venvera automatically propagates the status to the equivalent control in the other.

Compliance AreaNIST CSFGDPR
EncryptionPR.DS-01, PR.DS-02gdpr-se-04
Key ManagementPR.DS-01gdpr-se-04
Access ControlPR.AA-01gdpr-se-05
Incident ManagementRS.MA-01, RS.AN-03gdpr-bn-01
Incident ReportingRS.CO-02gdpr-bn-02
Business ContinuityRC.RP-01, RC.RP-03gdpr-se-03
Supplier ContractsGV.SC-05gdpr-cp-04
Data ClassificationPR.DS-10gdpr-pr-03
Security TestingID.IM-02gdpr-se-02
ℹ️
For details on how propagation works, thresholds, and the auto-mapped badge, see the Cross-Framework Control Propagation overview article.