CSF Crosswalk
Map catalogued threats and controls to the CSF function you already report against. Function first.
Start here if the board or a regulator is your audience.
Current viewResponse Swimlane
See who acts, in what order, for a selected threat. Threat first, with delegation fallback for lean teams.
Start here if you run the team that responds.
Open Swimlane →Stack Lab (Preview)
Evaluate what a capability stack changes across the six functions.
Start here if you are choosing or defending a security stack.
Open Stack Lab →NIST CSF 2.0 for agentic AI threats
The board-facing entry into the six-domain framework. Pick the CSF function your programme already reports against, and see which of the 21 validated threats, mitigation controls, and Singapore anchors (IMDA MGF, MAS AIRG, CSA Singapore) land there. Govern wraps the five operational functions, it is not a peer.
Governance stays human-owned. AI assists inventory and reporting only.
NIST AI RMF Govern functionRegister AI-orchestrated intrusion and AI-system compromise as named risks. Nominate a named owner per domain.
IMDA MGF dimension 1 (bounding risk); MAS AIRG (AI inventory, senior-management oversight).
Register AI-orchestrated intrusion and AI-system compromise as named risks. Nominate a named owner per domain.
