The List of Applicable Frameworks gives an overview of the cybersecurity, compliance and industry-specific frameworks supported by CSFaaS. These frameworks help you align your governance, risk management and compliance activities with international standards and best practices.
In addition to this library, CSFaaS lets you create and customise your own frameworks to address specific organisational needs and regulatory requirements.
1. Framework and Translation Availability
The table below lists the frameworks available in the import library, with their region of application and language availability (EN, FR, ES). Use it as a quick reference when selecting the frameworks that apply to your organisation.
| Type | Framework | Region | EN | FR | ES |
|---|---|---|---|---|---|
| Privacy | NIST PF 1.0 | US | ![]() | ![]() | ![]() |
| GDPR | EU | ![]() | ![]() | ![]() | |
| IAPP CIPM | US - EU | ![]() | ![]() | ![]() | |
| Risk Management | NIST SP 800-37 | US | ![]() | ![]() | ![]() |
| Organisational Management | NIST SP 800-53 rev. 5 | US | ![]() | ![]() | ![]() |
| NIST CSF 2.0 | US | ![]() | ![]() | ![]() | |
| NIST SP 1300 Small Business | US | ![]() | ![]() | ![]() | |
| ISO 9001:2015 | Global (ISO) | ![]() | ![]() | ![]() | |
| ISO 27001:2022 | Global (ISO) | ![]() | ![]() | ![]() | |
| NCA ECC | SA | ![]() | ![]() | ![]() | |
| AICPA SOC2 | US | ![]() | ![]() | ![]() | |
| CCCS - Baseline Controls for SME | CA | ![]() | ![]() | ![]() | |
| CyberFundamentals Small | BE | ![]() | ![]() | ![]() | |
| CyberFundamentals Basic | BE | ![]() | ![]() | ![]() | |
| CyberFundamentals Important | BE | ![]() | ![]() | ![]() | |
| CyberFundamentals Essential | BE | ![]() | ![]() | ![]() | |
| Maturity Model | CMMC 2.0 | US | ![]() | ![]() | ![]() |
| Health | HIPAA | US | ![]() | ![]() | ![]() |
| Financial Sector | DORA | EU | ![]() | ![]() | ![]() |
| Critical Infrastructure | NIS2 | EU | ![]() | ![]() | ![]() |
| NCA CSCC | SA | ![]() | ![]() | ![]() | |
| Artificial Intelligence | NIST AI 100-1 | US | ![]() | ![]() | ![]() |
| ISO 42001:2023 | Global (ISO) | ![]() | ![]() | ![]() | |
| Cloud | NCA CCC | SA | ![]() | ![]() | ![]() |
| Data Protection | NCA DCC | SA | ![]() | ![]() | ![]() |
| Social Media | NCA OSMACC | SA | ![]() | ![]() | ![]() |
| Operational Technology | NCA OTCC | SA | ![]() | ![]() | ![]() |
| Telework | NCA TCC | SA | ![]() | ![]() | ![]() |
| Bank Card Industry | PCI DSS | US - Global | ![]() | ![]() | ![]() |
2. Requesting a Framework
The library grows over time, and each framework can also gain new language versions. If a framework or a translation you need is not listed, contact the CSFaaS team: specific frameworks can be added on request.
Detailed summaries of each supported framework are available in the next section, in alphabetical order.

