Back to catalog
GOV-01GOVSecurity, Compliance & Resilience Governance
Security, Compliance & Resilience Program (SCRP)
Description
Mechanisms exist to facilitate the implementation of security, compliance and resilience governance controls.
Cross-Mappings
804 paths across 3 frameworks
Cross-Mappings
NIST 800-531 mapping
PM-1
1.00
- Secure Controls Framework · 2026.2 · scf_strm · superset
CCI406 mappings
CCI-000073
1.00
- Secure Controls Framework · 2026.2 · scf_strm · superset
- DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000074
1.00
- Secure Controls Framework · 2026.2 · scf_strm · superset
- DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000075
1.00
- Secure Controls Framework · 2026.2 · scf_strm · superset
- DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000076
1.00
- Secure Controls Framework · 2026.2 · scf_strm · superset
- DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000077
1.00
- Secure Controls Framework · 2026.2 · scf_strm · superset
- DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-001680
1.00
- Secure Controls Framework · 2026.2 · scf_strm · superset
- DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-002984
1.00
- Secure Controls Framework · 2026.2 · scf_strm · superset
- DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-002985
1.00
- Secure Controls Framework · 2026.2 · scf_strm · superset
- DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-002986
1.00
- Secure Controls Framework · 2026.2 · scf_strm · superset
- DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-002987
1.00
- Secure Controls Framework · 2026.2 · scf_strm · superset
- DISA · 2025-01-23 · disa_cci_list · equivalent
+396 more (top 10 by confidence shown)
STIG6 mappings
SV-259903r948747_ruleAn inventory of authorized instruments must be documented and maintained in support of the detection of unauthorized instruments connected to the Enterprise Voice, Video, and Messaging system.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · superset
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 1 · disa_xccdf · related
SV-259904r948748_ruleCustomers of the DISN VoSIP service must use address blocks assigned by the DRSN/VoSIP PMO.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · superset
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 1 · disa_xccdf · related
SV-259905r948749_ruleVoice networks must not be bridged via a Unified Capability (UC) soft client accessory.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · superset
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 1 · disa_xccdf · related
SV-259906r948750_ruleWhen soft-phones are implemented as the primary voice endpoint in the user's workspace, a policy must be defined to supplement with physical hardware-based phones near all such workspaces.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · superset
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 1 · disa_xccdf · related
SV-259907r948751_ruleImplementing Unified Capabilities (UC) soft clients as the primary voice endpoint must have authorizing official (AO) approval.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · superset
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 1 · disa_xccdf · related
SV-259908r948752_ruleDeploying Unified Capabilities (UC) soft clients on DOD networks must have authorizing official (AO) approval.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · superset
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 1 · disa_xccdf · related
Control mappings provided by the Secure Controls Framework (SCF).
SCF
Powered by the Secure Controls Framework
The control catalog, cross-mappings, and STRM relationship data shown here are provided by the Secure Controls Framework (SCF), 2026.2. Every mapping is credited to SCF as the methodology, with the SCF reference and version stored alongside it.
© SCF Council, LLC. Secure Controls Framework content is free and shown here with attribution. securecontrolsframework.com · About SCF on STIGViewer