Reference clusters from the knowledge vault, one per standard, regulation or framework. Each cluster page is the map of its notes: provenance, structure, controls or articles, comparisons and controversies, plus a dated position and a list of anchors to primary sources. The notes were written from public sources and model knowledge; no standards text was machine-processed for them.
Every page in this space is a vault note that has not been reviewed against the standard or regulation it describes. Use it as a map, and read the primary text before relying on a clause.
Clusters
| Group | Clusters |
|---|---|
| Ai governance | EU AI Act, ISO 42001, NIST AI RMF, OECD AI |
| Ai security | OWASP LLM Top 10 |
| Automotive cybersecurity | ISO 21434 |
| Automotive regulation | UN R155 R156 |
| Business continuity | ISO 22301 |
| Cloud security | CSA CCM |
| Cybersecurity frameworks | NIST CSF |
| Enterprise architecture | TOGAF |
| EU regulation | Cyber Resilience Act, DORA, NIS2 |
| It governance | COBIT |
| Payment security | PCI DSS |
| Privacy | GDPR |
| Process maturity | CMMI |
| Project management | PRINCE2 |
| Security compliance | BSI IT-Grundschutz, FedRAMP CMMC, HITRUST, ISO 27001, SOC 2, TISAX |
| Service management | ITIL |
| Supply chain security | SLSA SBOM |
| Threat intelligence | MITRE |