STANDARDS CROSSWALK

Standards Crosswalk.

Additional page sections

Maps governance, security and assurance control themes across AI, cyber, resilience and supplier frameworks.

Version 2.3 Research interface Protected engine Standards crosswalk matrix
PURPOSE

Decision supported.

Maps governance, security and assurance control themes across AI, cyber, resilience and supplier frameworks.

Intended user

research, assurance and technical review teams

Output status

Preliminary outputHuman review requiredNot certification
USE CASES

Where this instrument fits.

  • Compare framework coverage
  • Prepare evidence mappings
  • Find duplicate or missing controls
  • Create crosswalk discussion notes
INPUTS

Required input fields.

  • Control theme (required): Governance, Risk classification, Data management, Security, ...
  • NIST AI RMF relevance (required): Weak or unknown, Partial, Strong and evidenced
  • ISO/IEC 42001 relevance (required): Weak or unknown, Partial, Strong and evidenced
  • NIST CSF relevance (required): Weak or unknown, Partial, Strong and evidenced
  • OWASP LLM relevance (required): Weak or unknown, Partial, Strong and evidenced

Data handling: this interface uses the L2ET protected same-origin instrument engine. Do not enter confidential, regulated, privileged, incident, medical or sensitive operational data.

METHOD

Crosswalk Matrix logic.

Uses selected control theme and framework relevance ratings to produce mapped controls, gaps and evidence suggestions.

Source families

NIST AI RMFISO/IEC 42001NIST CSFOWASP LLM source family

Assumptions

  • Framework mapping requires specialist review.
  • Specific obligations vary by jurisdiction and organization.
  • Mappings are not authoritative.
INTERACTIVE INSTRUMENT

Standards crosswalk matrix.

Use the controls below to generate a preliminary artifact. The output is intentionally bounded and requires human review.

OUTPUT ARTIFACT

Standards crosswalk matrix.

The generated artifact includes findings, assumptions, limitations, recommended next actions and exportable structured output.

Export options

Copy outputMarkdownJSON
EXAMPLE

Example input and output.

Example input

Governance theme with partial relevance across NIST AI RMF and ISO/IEC 42001.

Example output

Outputs mapped control families and evidence artifacts to collect.

LIMITATIONS

What this tool does not do.

  • Not legal advice.
  • Not compliance certification.
  • Does not replace standards review.

This instrument does not provide legal, medical, cryptographic, engineering, regulatory or compliance certification.

RELATED METHOD

Method and workflow links.

Read the family method note for assumptions, output artifacts, update policy and review boundaries.

Open methodology Open family

CHANGELOG

Version history.

  • v2.3 - Research-grade instrument template, method notes, assumptions, limitations, example and export actions added.
  • Last updated: 2026-05-27.
  • Maturity state: Research interface.