Please enable JavaScript.
Coggle requires JavaScript to display documents.
HITRUST AI SECURITY MAPPING - Coggle Diagram
HITRUST AI SECURITY MAPPING
Incident Management
AI-Specific Security Incident Management Control
ISO 42001
A.5.2.7 – Incident Response and Corrective Action in AI Systems
NIST AI RMF
Manage Function – Respond / Recover
OWASP TOP 10 LLM
LLM10 – Insufficient AI Monitoring & Incident Response
SAIF
Operational Governance — Incident Detection & Response (Trustworthy AI Pillar)
Unique Control
ISO 42001
A.2,3,4,6,7,8,10
NIST AI RMF
GOV, TRANSPARENCY , DATA, MEASURE, OPERATE
EU AI ACT
ARTICLE 10, 13, 17,15,50
OWASP TOP 10 LLM
LLM01,2,3,5
SAIF
PILLAR1,2,3,4,5
Education, Training and Awareness
AI Security Training and Awareness Control
ISO 42001
A.5.3.2 – Awareness, Education, and Training for AI Systems
NIST AI RMF
“Govern” Function — GOV 2.3
MAS TRM
Section 12.1 – Staff Competency and Awareness
OWASP TOP 10 LLM
LLM10 – Inadequate AI Governance and Security Awareness
SAIF
Pillar 6 – AI Governance and Security Culture
Unique Control
SAIF
Pillar 3,5,7
MAS TRM
Model Validation & Back-testing
Third-Party / Vendor Controls
Data Integrity Controls / Lineage
EU AI Act
Article 15,17
iso 42001
A.6,7,10,11,5
16 Business Continuity & Disaster Recovery
AI Asset Backup and Recovery Control
NIST AI RMF
Manage” Function — Subcategory: Resilience / Recovery / Fault Tolerance
SAIF
Under secure operations / reliability / disaster recovery
Unique Control
EU AI ACT
Article 10,13,17,15,50
ISO 42001
A.2,4,5,6,8,10,11
NIST AI RMF
GOV-1,MAP-3, MEA-2, MAN-2, MEA-3, GOV-5,MAN-5
MAS TRM
13.3
SAIF
PILLAR1,2,3,4,5,6
Transmission Protection
AI Output Transmission Encryption Control
NIST AI RMF Similar Control
Manage Function — Subcategory: System & Communication Protection
SAIF
Under secure deployment / communications security
Unique Control
iso42001
A.5.2.3
A.6.3.2
A.7.2.1
A.8.1.2
A.10.1.1
A.11.3.1
A.12.2.1
NIST AI RMF
Govern (GOV-3)
Map (MAP-3)
Measure (MEA-2)
Govern (GOV-6)
Govern (GOV-7)
EU AI ACT
Article 9
Article 10
Article 13
Article 14, 15, 17
MAS TRM
13.3
OWASP TOP 10 LLM ALL 10