Reference

References

The frameworks, catalogs, and reports this assessment is built on and cites.

  • NIST Cybersecurity Framework 2.0
    Primary framework backbone for all six scored functions.
  • CIS Controls v8
    Source of question-level control granularity.
  • ISO/IEC 27001
    Optional compliance overlay for ISMS-related questions.
  • EU NIS2 Directive
    Optional overlay covering EU incident-notification duties.
  • AICPA SOC 2
    Optional overlay for vendor/SaaS audit readiness.
  • CISA Known Exploited Vulnerabilities Catalog
    Authoritative source for confirmed active exploitation.
  • National Vulnerability Database (NVD)
    Standardized vulnerability data and severity scoring.
  • IBM X-Force Threat Intelligence Index
    Cited for threat landscape statistics on the Trends & News tab.
  • IBM Cost of a Data Breach Report
    Cited for breach cost figures on the Trends & News tab.
  • Darktrace State of AI Cybersecurity
    Cited for AI-related threat findings on the Trends & News tab.
  • Case study sources
    Each incident on the Case Studies tab links to its own source individually.