Skip to content

Instantly share code, notes, and snippets.

@opexxx
Created September 17, 2021 09:14
Show Gist options
  • Save opexxx/5457c9ee48f2790a452264dc82574aa1 to your computer and use it in GitHub Desktop.
Save opexxx/5457c9ee48f2790a452264dc82574aa1 to your computer and use it in GitHub Desktop.
infosec frameworks, legislations, standards
Cybersecurity Maturity Model Certification (CMMC) Version 1.02
General Data Protection Regulation May 25 2018
Health Insurance Portability and Accountability Act of 1996 (HIPAA)
NIST 800-171 (Protecting CUI in Nonfederal Systems and Organizations)
NIST CSF Core 1.1 April 2018
NIST SP 800-53 Rev. 4
North American Electric Reliability Corporation (NERC) CIP Standard Version 5
NY DFS Framework 23 NYCRR 500 1.0
Payment Card Industry (PCI) Data Security Standard (DSS) 3.2.1
Payment Card Industry DSS Version 3.1
Standardized Information Gathering (SIG) Core 2020
Standardized Information Gathering (SIG) Full 2020
Standardized Information Gathering (SIG) Lite 2020
TISAX (Trusted Information Security Assessment Exchange)
Consensus Assessments Initiative Questionnaire 261q
Consensus Assessments Initiative Questionnaire Lite 71q
CIS Controls Implementation Group 1 101q
CIS Controls Implementation Group 2 213q
CIS Controls Implementation Group 3 239q
CIS Top 20 Critical Security Controls 171q
CIS Top 5 Critical Security Controls 39q
CMMC Cybersecurity Maturity Model Certification Level1 59q
CMMC Cybersecurity Maturity Model Certification Level2 369q
CMMC Cybersecurity Maturity Model Certification Level3 705q
General Data Protection Regulation GDPR 145q
GDPR Processor Questionnaire 21q
Higher Education Cloud Vendor Assessment Tool HECVAT 267
Higher Education Cloud Vendor Assessment Tool HECVAT Lite 61q
Health Insurance Portability and Accountability Act HIPAA 120q
ISO/IEC 27001 - Information Security Management 237q
NIST SP 800-171 Protecting Controlled Unclassified Information in Nonfederal Information Systems and Organizations 109q
NIST SP 800-53 HIGH Security and Privacy Controls for Information Systems and Organizations 969q
NIST SP 800-53 LOW Security and Privacy Controls for Information Systems and Organizations 663q
NIST SP 800-53 MODERATE Security and Privacy Controls for Information Systems and Organizations 859q
PCI DSS Payment Card Industry Data Security Standard 269q
PRIVACY SHIELD Privacy Shield Assessment 75q
SIG Shared Assessments SIG 1619q
SIG Shared Assessments SIG Core 1025q
SIG Shared Assessments SIG Lite 329q
SIG Shared Assessments SIG Privacy 153q
Vendor Security Alliance Questionnaire VSA 119
Vendor Security Alliance Questionnaire VSA Core 105
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment