Security frameworks

Your guide to security and compliance standards.

Navigate the complex landscape of security standards, certifications, and regulatory compliance frameworks that shape modern information security.

All frameworks

ABDO

General Security Requirements for Defense Orders, defining security requirements for organizations working with the Dutch Ministry of Defense.

BIO

Baseline Information Security for the Dutch government, providing a standardized set of security measures for all government organizations.

CIS Controls

Prescriptive, prioritized set of cybersecurity best practices and defensive actions designed to protect organizations against common cyber attacks.

DNB ICT Guidelines

Information security guidelines from the Dutch Central Bank for financial institutions under its supervision.

Digital Operational Resilience Act, establishing uniform requirements for the security of network and information systems of financial entities.

EBA ICT Guidelines

Guidelines on ICT and security risk management from the European Banking Authority for financial institutions.

General Data Protection Regulation, establishing rules for the protection of personal data and privacy rights of EU residents.

International standard for information security management systems (ISMS), providing requirements for establishing, implementing, maintaining and continually improving an information security management system.

ISO 9001

International standard for quality management systems (QMS), specifying requirements for consistent delivery of products and services.

NEN7510

Dutch standard for information security in healthcare, providing specific requirements for managing medical information.

Belgian implementation of the NIS2 directive, providing fundamental cybersecurity requirements for essential service providers.

NIST CSF

NIST Cybersecurity Framework, providing voluntary guidance for organizations to better manage and reduce cybersecurity risk.

NIST SP800-53

Security and privacy controls standard providing detailed security control requirements for federal information systems.

RVIT

Security requirements for telecommunications providers under the Dutch Telecommunications Act.

Service Organization Control 2, defining criteria for managing customer data based on five trust service principles.