Skip to content

Commit 4a7918a

Browse files
authored
Merge pull request #1 from jonashirner/ISO-27001-2022-mapping
Iso 27001 2022 mapping
2 parents c5dd637 + cb9a004 commit 4a7918a

18 files changed

Lines changed: 386 additions & 197 deletions

src/assets/YAML/default/BuildAndDeployment/Build.yaml

Lines changed: 10 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -31,7 +31,7 @@ Build and Deployment:
3131
iso27001-2017:
3232
- 14.2.6
3333
iso27001-2022:
34-
- ISO 27001:2022 mapping is missing
34+
- 8.31
3535
isImplemented: false
3636
evidence: ""
3737
comments: ""
@@ -66,7 +66,8 @@ Build and Deployment:
6666
- 12.1.1
6767
- 14.2.2
6868
iso27001-2022:
69-
- ISO 27001:2022 mapping is missing
69+
- 5.37
70+
- 8.32
7071
isImplemented: false
7172
evidence: ""
7273
comments: ""
@@ -97,7 +98,7 @@ Build and Deployment:
9798
iso27001-2017:
9899
- 14.2.6
99100
iso27001-2022:
100-
- ISO 27001:2022 mapping is missing
101+
- 8.31
101102
isImplemented: false
102103
evidence: ""
103104
comments: ""
@@ -119,10 +120,11 @@ Build and Deployment:
119120
references:
120121
samm2: []
121122
iso27001-2017:
122-
- "8.1"
123-
- "8.2"
123+
- 8.1
124+
- 8.2
124125
iso27001-2022:
125-
- ISO 27001:2022 mapping is missing
126+
- 5.9
127+
- 5.12
126128
isImplemented: false
127129
evidence: ""
128130
comments: ""
@@ -148,7 +150,7 @@ Build and Deployment:
148150
iso27001-2017:
149151
- 14.2.6
150152
iso27001-2022:
151-
- ISO 27001:2022 mapping is missing
153+
- 8.31
152154
isImplemented: false
153155
evidence: ""
154156
comments: ""
@@ -173,7 +175,7 @@ Build and Deployment:
173175
iso27001-2017:
174176
- 14.2.6
175177
iso27001-2022:
176-
- ISO 27001:2022 mapping is missing
178+
- 8.31
177179
isImplemented: false
178180
evidence: ""
179181
comments: ""

src/assets/YAML/default/BuildAndDeployment/Deployment.yaml

Lines changed: 37 additions & 15 deletions
Original file line numberDiff line numberDiff line change
@@ -27,7 +27,12 @@ Build and Deployment:
2727
- 12.5.1
2828
- 14.2.9
2929
iso27001-2022:
30-
- ISO 27001:2022 mapping is missing
30+
- 8.14
31+
- 5.37
32+
- 8.31
33+
- 8.32
34+
- 8.19
35+
- 8.29
3136
isImplemented: false
3237
evidence: ""
3338
comments: ""
@@ -49,7 +54,7 @@ Build and Deployment:
4954
iso27001-2017:
5055
- 11.2.7
5156
iso27001-2022:
52-
- ISO 27001:2022 mapping is missing
57+
- 7.14
5358
isImplemented: false
5459
evidence: ""
5560
comments: ""
@@ -79,7 +84,8 @@ Build and Deployment:
7984
- 12.1.1
8085
- 14.2.2
8186
iso27001-2022:
82-
- ISO 27001:2022 mapping is missing
87+
- 5.37
88+
- 8.32
8389
isImplemented: false
8490
evidence: ""
8591
comments: ""
@@ -108,7 +114,8 @@ Build and Deployment:
108114
- 9.4.5
109115
- 14.2.6
110116
iso27001-2022:
111-
- ISO 27001:2022 mapping is missing
117+
- 8.4
118+
- 8.31
112119
d3f:
113120
- ApplicationConfigurationHardening
114121
isImplemented: false
@@ -142,7 +149,11 @@ Build and Deployment:
142149
- 9.4.1
143150
- 10.1.2
144151
iso27001-2022:
145-
- ISO 27001:2022 mapping is missing
152+
- 8.33
153+
- 8.22
154+
- 5.17
155+
- 8.3
156+
- 8.24
146157
d3f:
147158
- ApplicationConfigurationHardening
148159
isImplemented: false
@@ -170,10 +181,11 @@ Build and Deployment:
170181
samm2:
171182
- I-SD-2-A
172183
iso27001-2017:
173-
- "8.1"
174-
- "8.2"
184+
- 8.1
185+
- 8.2
175186
iso27001-2022:
176-
- ISO 27001:2022 mapping is missing
187+
- 5.9
188+
- 5.12
177189
isImplemented: false
178190
evidence: ""
179191
comments: ""
@@ -195,10 +207,11 @@ Build and Deployment:
195207
samm2:
196208
- I-SD-2-A
197209
iso27001-2017:
198-
- "8.1"
199-
- "8.2"
210+
- 8.1
211+
- 8.2
200212
iso27001-2022:
201-
- ISO 27001:2022 mapping is missing
213+
- 5.9
214+
- 5.12
202215
isImplemented: false
203216
evidence: ""
204217
comments: ""
@@ -225,7 +238,9 @@ Build and Deployment:
225238
- 14.2.2
226239
- 17.2.1
227240
iso27001-2022:
228-
- ISO 27001:2022 mapping is missing
241+
- 8.19
242+
- 8.32
243+
- 8.14
229244
isImplemented: false
230245
evidence: ""
231246
comments: ""
@@ -252,7 +267,9 @@ Build and Deployment:
252267
- 14.2.8
253268
- 12.1.4
254269
iso27001-2022:
255-
- ISO 27001:2022 mapping is missing
270+
- 8.33
271+
- 8.29
272+
- 8.31
256273
isImplemented: false
257274
evidence: ""
258275
comments: ""
@@ -280,7 +297,9 @@ Build and Deployment:
280297
- 14.2.9
281298
- 12.1.4
282299
iso27001-2022:
283-
- ISO 27001:2022 mapping is missing
300+
- 8.33
301+
- 8.29
302+
- 8.31
284303
d3f:
285304
- ApplicationConfigurationHardening
286305
isImplemented: false
@@ -308,7 +327,10 @@ Build and Deployment:
308327
- 15.1.3
309328
- 14.1.3
310329
iso27001-2022:
311-
- ISO 27001:2022 mapping is missing
330+
- 5.19
331+
- 5.20
332+
- 5.21
333+
- 8.26
312334
isImplemented: false
313335
evidence: ""
314336
comments: ""

src/assets/YAML/default/BuildAndDeployment/PatchManagement.yaml

Lines changed: 9 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -20,7 +20,9 @@ Build and Deployment:
2020
- 12.5.1
2121
- 14.2.5
2222
iso27001-2022:
23-
- ISO 27001:2022 mapping is missing
23+
- 8.8
24+
- 8.19
25+
- 8.27
2426
isImplemented: false
2527
evidence: ""
2628
comments: ""
@@ -47,7 +49,8 @@ Build and Deployment:
4749
- 12.6.1
4850
- 14.2.5
4951
iso27001-2022:
50-
- ISO 27001:2022 mapping is missing
52+
- 8.8
53+
- 8.27
5154
isImplemented: false
5255
evidence: ""
5356
comments: ""
@@ -70,7 +73,7 @@ Build and Deployment:
7073
iso27001-2017:
7174
- 12.6.1
7275
iso27001-2022:
73-
- ISO 27001:2022 mapping is missing
76+
- 8.8
7477
isImplemented: false
7578
evidence: ""
7679
comments: ""
@@ -95,7 +98,7 @@ Build and Deployment:
9598
- hardening is missing in ISO 27001
9699
- 14.2.1
97100
iso27001-2022:
98-
- ISO 27001:2022 mapping is missing
101+
- 8.25
99102
isImplemented: false
100103
evidence: ""
101104
comments: ""
@@ -121,7 +124,7 @@ Build and Deployment:
121124
iso27001-2017:
122125
- 12.6.1
123126
iso27001-2022:
124-
- ISO 27001:2022 mapping is missing
127+
- 8.8
125128
isImplemented: false
126129
evidence: ""
127130
comments: ""
@@ -144,7 +147,7 @@ Build and Deployment:
144147
iso27001-2017:
145148
- 12.6.1
146149
iso27001-2022:
147-
- ISO 27001:2022 mapping is missing
150+
- 8.8
148151
isImplemented: false
149152
evidence: ""
150153
comments: ""

src/assets/YAML/default/CultureAndOrganization/Design.yaml

Lines changed: 28 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -44,7 +44,10 @@ Culture and Organization:
4444
- 8.2.1
4545
- 14.2.1
4646
iso27001-2022:
47-
- ISO 27001:2022 mapping is missing
47+
- not explicitly covered by ISO 27001
48+
- may be part of risk assessment
49+
- 5.12
50+
- 8.25
4851
isImplemented: false
4952
evidence: ""
5053
comments: ""
@@ -69,7 +72,10 @@ Culture and Organization:
6972
- 8.2.1
7073
- 14.2.1
7174
iso27001-2022:
72-
- ISO 27001:2022 mapping is missing
75+
- not explicitly covered by ISO 27001
76+
- may be part of risk assessment
77+
- 5.12
78+
- 8.25
7379
isImplemented: false
7480
evidence: ""
7581
comments: ""
@@ -143,7 +149,10 @@ Culture and Organization:
143149
- 8.2.1
144150
- 14.2.1
145151
iso27001-2022:
146-
- ISO 27001:2022 mapping is missing
152+
- not explicitly covered by ISO 27001
153+
- may be part of risk assessment
154+
- 5.12
155+
- 8.25
147156
isImplemented: false
148157
evidence: ""
149158
comments: ""
@@ -172,7 +181,11 @@ Culture and Organization:
172181
- may be part of risk assessment
173182
- 8.1.2
174183
iso27001-2022:
175-
- ISO 27001:2022 mapping is missing
184+
- not explicitly covered by ISO 27001
185+
- may be part of project management
186+
- 5.8
187+
- may be part of risk assessment
188+
- 5.9
176189
isImplemented: false
177190
evidence: ""
178191
comments: ""
@@ -201,7 +214,11 @@ Culture and Organization:
201214
- may be part of risk assessment
202215
- 8.1.2
203216
iso27001-2022:
204-
- ISO 27001:2022 mapping is missing
217+
- not explicitly covered by ISO 27001
218+
- may be part of project management
219+
- 5.8
220+
- may be part of risk assessment
221+
- 5.9
205222
isImplemented: false
206223
evidence: ""
207224
comments: ""
@@ -231,7 +248,10 @@ Culture and Organization:
231248
- 8.2.1
232249
- 14.2.1
233250
iso27001-2022:
234-
- ISO 27001:2022 mapping is missing
251+
- not explicitly covered by ISO 27001
252+
- may be part of risk assessment
253+
- 5.12
254+
- 8.25
235255
isImplemented: false
236256
evidence: ""
237257
comments: ""
@@ -254,7 +274,8 @@ Culture and Organization:
254274
- 5.1.1
255275
- 7.2.1
256276
iso27001-2022:
257-
- ISO 27001:2022 mapping is missing
277+
- 5.1
278+
- 5.4
258279
isImplemented: false
259280
evidence: ""
260281
comments: ""

0 commit comments

Comments
 (0)