Analysis: Secure Control Framework Assessment Objectives

Sources:
  • Organization: Secure Controls Framework (SCF)
  • Data Source: SCF Download
The bar chart below provides assessment objective counts by control domain. The SCF consists of 4,156 assessment objectives assigned to 33 control domains.
  1. Cybersecurity & Privacy Governance (GOV) - 90
  2. Artificial and Autonomous Technologies (AAT) - 127
  3. Asset Management (AST) - 140 assessment objectives
  4. Business Continuity & Disaster Recovery (BCD) - 176
  5. Capacity & Performance Planning (CAP) - 14
  6. Change Management (CHG) - 89
  7. Cloud Security (CLD) - 29
  8. Compliance (CPL) - 69
  9. Configuration Management (CFG) - 142
  10. Continuous Monitoring (MON) - 250
  11. Cryptographic Protections (CRY) - 71
  12. Data Classification & Handling (DCH) - 341
  13. Embedded Technology (EMB) - 23
  14. Endpoint Security (END) - 205
  15. Human Resources Security (HRS) - 145
  16. Identification & Authentication (IAC) - 337
  17. Incident Response (IRO) - 177
  18. Information Assurance (IAO) - 131
  19. Maintenance (MNT) - 136
  20. Mobile Device Management (MDM) - 27
  21. Network Security (NET) - 301
  22. Physical & Environmental Security (PES) - 174
  23. Privacy (PRI) - 279
  24. Project & Resource Management (PRM) - 79
  25. Risk Management (RSK) - 98
  26. Secure Engineering & Architecture (SEA) - 164
  27. Security Operations (OPS) - 21
  28. Security Awareness & Training (SAT) - 74
  29. Technology Development & Acquisition (TDA) - 276
  30. Third-Party Management (TPM) - 99
  31. Threat Management (THR) - 48
  32. Vulnerability & Patch Management (VPM) - 100
  33. Web Security (WEB) - 15
Link to the corresponding table chart - here.