Security Compliance
What is Security Compliance?
The adherence to security-related laws, regulations, standards, and organizational policies governing the protection of information assets.
Terms that appear alongside security compliance
Each of these is named in at least one of the same controls as security compliance. The number is how many controls name both.
- compliance 6 shared controls
- nist 2 shared controls
- audit 2 shared controls
Frameworks that govern security compliance
What the standards actually require on security compliance
Requirements naming security compliance across 5 standards, quoted from the control text.
Relevant persons must keep records that evidence compliance with each applicable security requirement for the periods specified in the regulations, in a form accessible to enforcement.
PSTI-3.1 · Record Keeping for Security Compliance →Operate third-party + supply chain risk + awareness training + physical security + compliance audit per Oman framework. Third-party risk must apply NIST SP 800-161 SCRM tailored to Oman context including vendor qualification + contract requirements + ongoing m...
OMANCS-8 · Third-Party + Supply Chain Risk, Awareness Training, Physical Security, Compliance Audit →Publish and keep current secure use guidance for customers on the productive service version, pitched at their security, compliance and audit specialists, covering secure configuration, vulnerability and update information sources, error handling and logging,...
C5-PSS-01 · Guidelines and Recommendations for Cloud Customers →Articles 11-16 establish the DATA SUBJECT RIGHTS regime. Each right is exercisable through a request to the controller + the controller must respond within reasonable time (Data Office guidance suggests 30 days).
UAE-PDPL-Art.11_12_13_14_15_16 · Data subject rights (UAE PDPL Articles 11-16) →Establish media sanitization policy per NIST SP 800-88 Rev 1 Chapter 4 (Information Sanitization and Disposition Decision Flow). Policy must (a) define the scope of media covered (electronic storage media + paper + microform + cloud-resident data + ephemeral s...
NISTSP88-1 · Media Sanitization Policy, Roles, and Decision Framework →Questions people ask about security compliance
What is Security Compliance?
Why is Security Compliance important for compliance?
Which compliance frameworks address Security Compliance?
Where can I learn more about Security Compliance?
See how Security Compliance applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.