CIS Benchmarks
More than 1,598 controls across applicable products and asset types.
Cyobik maps collected technical and operational data to predefined CIS Benchmark, PCI DSS and ISO/IEC 27001 controls and reports results by asset, control and framework.
More than 1,598 controls across applicable products and asset types.
Map collected technical and operational data to applicable predefined PCI DSS controls.
Map available evidence to applicable ISO/IEC 27001 controls within technical visibility.
| Status | Meaning | Operational value |
|---|---|---|
| Compliant | Available evidence satisfies the mapped control logic. | Supports traceable reporting at asset and control level. |
| Not Compliant | Available evidence indicates the mapped requirement is not satisfied. | Highlights technical control gaps and available remediation guidance. |
| Not Applicable | The control does not apply to the evaluated asset or context. | Prevents irrelevant controls from distorting results. |
| Insufficient Data | Cyobik does not have enough evidence to determine the result. | Separates an evidence gap from an actual control failure. |
Collected asset, configuration, vulnerability and operational data can contribute to multiple mapped controls or frameworks without being recollected for each report.
Use framework-level views for management reporting and drill down to the controls and assets producing each result.
Controls outside technical visibility are not evaluated automatically. Cyobik provides control-based technical evidence and reporting; governance, policy, human-process and certification activities remain outside the product’s automated scope.
Review the deployment model, access controls, audit logging and update paths designed for security-sensitive organisations.