-
Notifications
You must be signed in to change notification settings - Fork 1
Crosswalks
Auto-generated page. This page is generated from the live Evidentia codebase by
scripts/wiki/sync_reference.py. Do not edit it by hand; change the underlying code/data and re-run the generator (uv run python scripts/wiki/sync_reference.py).
Evidentia bundles 13 framework crosswalks (864 control-to-control mapping rows in total). A crosswalk maps controls in a source framework to related controls in a target framework, powering cross-framework gap-analysis efficiency. The verification column records the posture: crosswalks marked self-attested-via-upstream are auto-extracted from an upstream source and not independently hand-verified; an empty posture marks an Evidentia-authored concordance. Always verify a mapping before relying on it for an audit.
| Crosswalk file | Source framework | Target framework | Verification | Mapping rows |
|---|---|---|---|---|
fedramp-rev5-moderate_to_cmmc-2-l2.json |
fedramp-rev5-moderate |
cmmc-2-l2 |
— | 32 |
iso-27001-2022_to_nist-800-53-mod.json |
iso-27001-2022 |
nist-800-53-mod |
— | 23 |
nist-800-53-mod_to_hipaa-security.json |
nist-800-53-mod |
hipaa-security |
— | 20 |
nist-800-53-rev5_to_soc2-tsc.json |
nist-800-53-mod |
soc2-tsc |
— | 17 |
nist-ai-rmf-1.0_to_eu-ai-act.json |
nist-ai-rmf-1.0 |
eu-ai-act |
— | 26 |
nist-ai-rmf-1.0_to_iso-42001-2023.json |
nist-ai-rmf-1.0 |
iso-42001-2023 |
— | 23 |
nist-csf-2.0_to_nist-800-53-mod.json |
nist-csf-2.0 |
nist-800-53-mod |
— | 36 |
osps-baseline_to_eu-cra.json |
osps-baseline-2026.02.19 |
eu-cra |
self-attested-via-upstream | 107 |
osps-baseline_to_nist-800-161.json |
osps-baseline-2026.02.19 |
nist-800-161 |
self-attested-via-upstream | 200 |
osps-baseline_to_nist-csf-2.0.json |
osps-baseline-2026.02.19 |
nist-csf-2.0 |
self-attested-via-upstream | 52 |
osps-baseline_to_nist-ssdf-800-218.json |
osps-baseline-2026.02.19 |
nist-ssdf-800-218 |
self-attested-via-upstream | 115 |
osps-baseline_to_pci-dss-4.0.json |
osps-baseline-2026.02.19 |
pci-dss-4.0 |
self-attested-via-upstream | 200 |
us-va-vcdpa_to_us-ca-ccpa-cpra.json |
us-va-vcdpa |
us-ca-ccpa-cpra |
— | 13 |
-
- AI Governance
- Air Gapped Install
- Ci Integration
- CONMON Deployment
- Emit Cyclonedx VEX
- Emit OCSF Detection
- Emit SARIF
- Explain Controls
- Generate And Quantify Risk
- Governance Metrics And Workflows
- Ingest OCSF
- Manage Model Risk
- Manage POAM
- Manage Third Party Risk
- MCP Client Setup
- OSPS Self Assessment
- Run Gap Analysis
- Serve The Web Ui
- Sign And Verify Evidence