International

SWIFT CSCF

34 controls. 109 other frameworks in our corpus share controls with it. Here is all of it, and how much of it you are already doing.

Page built . This page is derived from the framework corpus, which changes when the corpus is extended rather than daily.

34 controls 109 frameworks share controls with it International verified against its source document

Every control below is one this framework asks for. The right hand column counts how many other frameworks in our corpus carry the same control, which is the difference between doing this work once and doing it again for the next standard.

SWIFT CSCF Evidence & Implementation Kit

34 controls is the documentation set somebody has to write. This is that set, already written: an adopt-ready artifact for every control in policy and procedure text you edit rather than draft, and the evidence checklist an auditor asks for against each.

See what is in it, $249

The same set every buyer of this kit receives. Nothing here is produced on request.

What you already have

Frameworks whose controls overlap this one, most first. If you run any of them, the count is roughly what you have already evidenced.

Every control

CodeControlAlso in
CSCF-1.1SWIFT Environment Protection0
CSCF-1.2Operating System Privileged Account Control0
CSCF-1.3Virtualisation Platform Protection0
CSCF-1.4ARestriction of Internet Access0
CSCF-2.1Internal Data Flow Security0
CSCF-2.11ARMA Business Controls0
CSCF-2.2Security Updates0
CSCF-2.3System Hardening0
CSCF-2.4ABack Office Data Flow Security0
CSCF-2.5AExternal Transmission Data Protection0
CSCF-2.6Operator Session Confidentiality and Integrity0
CSCF-2.7Vulnerability Scanning0
CSCF-2.8AOutsourced Critical Activity Protection0
CSCF-2.9Transaction Business Controls0
CSCF-3.1Physical Security0
CSCF-4.1Password Policy0
CSCF-4.2Multi Factor Authentication0
CSCF-5.1Logical Access Control0
CSCF-5.2Token Management0
CSCF-5.3APersonnel Vetting0
CSCF-5.4Password Repository Protection0
CSCF-6.1Malware Protection0
CSCF-6.4Logging and Monitoring0
CSCF-6.5AIntrusion Detection0
CSCF-7.1Cyber Incident Response Planning0
CSCF-7.2Security Training and Awareness0
SWIFTCSCF-1Restrict Internet Access and Protect Critical Systems (Objective 1)79
SWIFTCSCF-2Reduce Attack Surface and Vulnerabilities (Objective 2)2
SWIFTCSCF-3Physically Secure the Environment (Objective 3)22
SWIFTCSCF-4Prevent Compromise of Credentials (Objective 4)8
SWIFTCSCF-5Manage Identities and Segregate Privileges (Objective 5)2
SWIFTCSCF-6Detect Anomalous Activity (Objective 6)53
SWIFTCSCF-7Plan Incident Response (Objective 7)9
SWIFTCSCF-8Annual Attestation and Independent Assessment0

Tell me when SWIFT CSCF files something new

One email when a public company newly discloses something this framework governs, naming the company and what our corpus says it puts in scope. Nothing else, and one click to stop.

What this page is

A control-level reference for SWIFT CSCF, drawn from our framework corpus. Control codes and titles are references to the standard, not reproductions of it. The overlap counts and the auditor artefacts are our own work and are the part you will not find elsewhere.

Measure this against what you already run · All frameworks · Today's edition