Supported Frameworks

Comprehensive Frameworks, One Platform

Complete support for NIST, CIS Benchmarks, PCI-DSS, HIPAA, SOC 2, ISO 27001, GDPR, and more. Assess multiple standards simultaneously with our framework-agnostic engine.

Complete Framework Coverage

Pre-built support for major security, privacy, industry, and cloud compliance frameworks

NIST Frameworks

Comprehensive NIST cybersecurity and privacy frameworks

NIST CSF v1.1

v1.1

NIST CSF v2.0

v2.0

NIST Privacy Framework

Current

NIST 800-53 Rev 3

Rev 3

NIST 800-53 Rev 4

Rev 4

NIST 800-53 Rev 5

Rev 5

+ 7 more

CIS Benchmarks

CIS Controls and platform-specific security benchmarks

CIS Controls v8

v8

CIS Amazon Linux 2 v3.0.0

v3.0.0

CIS Debian 11 v2.0.0

v2.0.0

CIS Red Hat Enterprise Linux 9 v2.0.0

v2.0.0

CIS Ubuntu Linux 24.04 v1.0.0

v1.0.0

CIS macOS Sequoia 15 v1.1.0

v1.1.0

+ 4 more

Healthcare Compliance

Healthcare-specific regulations and standards

HIPAA

Current

HIPAA Privacy Rule

Current

HIPAA Security Rule

Current

HITECH

Current

FDA 21 CFR Part 11

Current

PCI & Financial

Payment card and financial services compliance

PCI DSS v3.2.1

v3.2.1

PCI DSS v3.2.1 Rev 1

v3.2.1 Rev 1

PCI DSS v4.0

v4.0

PCI DSS v4.0.1

v4.0.1

SOX

Current

SOC 2

2017

Regional Regulations

Global privacy and cybersecurity regulations

GDPR

2018

DORA EU

Current

UK Cyber Essentials v3.2.1 (2025)

v3.2.1

Australia Information Security Manual (June 2025)

2025

Australia Essential 8 (2023)

2023

MAS Technology Risk Management (MASTRM)

Current

+ 1 more

Government & Standards

ISO and additional frameworks

ISO 27001:2022

2022

OWASP Top 10

Current

+ 3 more frameworks

Various

Framework Management Features

Advanced capabilities for managing compliance across multiple frameworks

Multi-Framework Assessment

Assess compliance across multiple frameworks simultaneously with a single data collection

Automatic Framework Updates

Stay current with quarterly updates as frameworks evolve and new versions are released

AI-Powered Mapping

Intelligent control mapping identifies overlaps and gaps across different frameworks

Custom Framework Support

Create custom frameworks or extend existing ones for organization-specific requirements

Measurable Results

Real impact on compliance operations and audit outcomes

NIST Frameworks

CSF, 800-53, 800-171, Privacy Framework

CIS Benchmarks

Controls, OS, Container, and Cloud benchmarks

Regulatory Frameworks

HIPAA, PCI-DSS, SOC 2, SOX compliance

Global Standards

GDPR, ISO 27001, regional regulations

Need a Custom Framework?

Our platform supports custom framework creation for organization-specific requirements, industry consortiums, or proprietary standards.

Custom Controls

Define your own compliance controls

Evidence Mapping

Map to existing data sources

Version Control

Track framework changes over time

Ready to Simplify Compliance?

See how RTCA handles your specific framework requirements