For a whole framework: every control, the ATT&CK techniques it defends, and whether you can detect them
This is the one-page answer to "are my controls actually backed by detection?". For each control in the framework it shows the ATT&CK techniques the control maps to, and marks each technique detectable when a real rule (Sigma, CAR, IDS, YARA, Falco) covers it, or a gap when nothing does. Honest by construction: control-to-technique links come only from the published mappings, and a technique counts as detectable only if a real rule maps to it. Controls with no ATT&CK mapping are shown as such, not hidden. Export the full matrix for your auditor below.
NIST CSF has 106 controls loaded, but no published control-to-ATT&CK mapping has been ingested for this framework yet.
We do not fabricate mappings. The authoritative ATT&CK technique coverage we can show today is for NIST 800-53 (and CSA CCM, CRI Profile). For NIST CSF, the controls below are real and searchable, but their threat-technique coverage is not yet available here - it will be added once the official NIST 800-53 crosswalk for this framework is ingested. Until then, pivot to NIST 800-53 for technique-level coverage.
NIST 800-53 ATT&CK mappings are published at the base-control level (e.g. AC-18), so the 106 sub-control enhancements (AC-18.1, AC-18.2, …) carry no direct technique mapping - their coverage is inherited from the base control. They are hidden by default.
DE.AE-02Adverse Event Analysisenhancement of DE
DE.AE-03Adverse Event Analysisenhancement of DE
DE.AE-04Adverse Event Analysisenhancement of DE
DE.AE-06Adverse Event Analysisenhancement of DE
DE.AE-07Adverse Event Analysisenhancement of DE
DE.AE-08Adverse Event Analysisenhancement of DE
DE.CM-01Continuous Monitoringenhancement of DE
DE.CM-02Continuous Monitoringenhancement of DE
DE.CM-03Continuous Monitoringenhancement of DE
DE.CM-06Continuous Monitoringenhancement of DE
DE.CM-09Continuous Monitoringenhancement of DE
GV.OC-01Organizational Contextenhancement of GV
GV.OC-02Organizational Contextenhancement of GV
GV.OC-03Organizational Contextenhancement of GV
GV.OC-04Organizational Contextenhancement of GV
GV.OC-05Organizational Contextenhancement of GV
GV.OV-01Oversightenhancement of GV
GV.OV-02Oversightenhancement of GV
GV.OV-03Oversightenhancement of GV
GV.PO-01Policyenhancement of GV
GV.PO-02Policyenhancement of GV
GV.RM-01Risk Management Strategyenhancement of GV
GV.RM-02Risk Management Strategyenhancement of GV
GV.RM-03Risk Management Strategyenhancement of GV
GV.RM-04Risk Management Strategyenhancement of GV
GV.RM-05Risk Management Strategyenhancement of GV
GV.RM-06Risk Management Strategyenhancement of GV
GV.RM-07Risk Management Strategyenhancement of GV
GV.RR-01Roles, Responsibilities, and Authoritiesenhancement of GV
GV.RR-02Roles, Responsibilities, and Authoritiesenhancement of GV
GV.RR-03Roles, Responsibilities, and Authoritiesenhancement of GV
GV.RR-04Roles, Responsibilities, and Authoritiesenhancement of GV
GV.SC-01Cybersecurity Supply Chain Risk Managementenhancement of GV
GV.SC-02Cybersecurity Supply Chain Risk Managementenhancement of GV
GV.SC-03Cybersecurity Supply Chain Risk Managementenhancement of GV
GV.SC-04Cybersecurity Supply Chain Risk Managementenhancement of GV
GV.SC-05Cybersecurity Supply Chain Risk Managementenhancement of GV
GV.SC-06Cybersecurity Supply Chain Risk Managementenhancement of GV
GV.SC-07Cybersecurity Supply Chain Risk Managementenhancement of GV
GV.SC-08Cybersecurity Supply Chain Risk Managementenhancement of GV
GV.SC-09Cybersecurity Supply Chain Risk Managementenhancement of GV
GV.SC-10Cybersecurity Supply Chain Risk Managementenhancement of GV
ID.AM-01Asset Managementenhancement of ID
ID.AM-02Asset Managementenhancement of ID
ID.AM-03Asset Managementenhancement of ID
ID.AM-04Asset Managementenhancement of ID
ID.AM-05Asset Managementenhancement of ID
ID.AM-07Asset Managementenhancement of ID
ID.AM-08Asset Managementenhancement of ID
ID.IM-01Improvementenhancement of ID
ID.IM-02Improvementenhancement of ID
ID.IM-03Improvementenhancement of ID
ID.IM-04Improvementenhancement of ID
ID.RA-01Risk Assessmentenhancement of ID
ID.RA-02Risk Assessmentenhancement of ID
ID.RA-03Risk Assessmentenhancement of ID
ID.RA-04Risk Assessmentenhancement of ID
ID.RA-05Risk Assessmentenhancement of ID
ID.RA-06Risk Assessmentenhancement of ID
ID.RA-07Risk Assessmentenhancement of ID
ID.RA-08Risk Assessmentenhancement of ID
ID.RA-09Risk Assessmentenhancement of ID
ID.RA-10Risk Assessmentenhancement of ID
PR.AA-01Identity Management, Authentication, and Access Controlenhancement of PR
PR.AA-02Identity Management, Authentication, and Access Controlenhancement of PR
PR.AA-03Identity Management, Authentication, and Access Controlenhancement of PR
PR.AA-04Identity Management, Authentication, and Access Controlenhancement of PR
PR.AA-05Identity Management, Authentication, and Access Controlenhancement of PR
PR.AA-06Identity Management, Authentication, and Access Controlenhancement of PR
PR.AT-01Awareness and Trainingenhancement of PR
PR.AT-02Awareness and Trainingenhancement of PR
PR.DS-01Data Securityenhancement of PR
PR.DS-02Data Securityenhancement of PR
PR.DS-10Data Securityenhancement of PR
PR.DS-11Data Securityenhancement of PR
PR.IR-01Technology Infrastructure Resilienceenhancement of PR
PR.IR-02Technology Infrastructure Resilienceenhancement of PR
PR.IR-03Technology Infrastructure Resilienceenhancement of PR
PR.IR-04Technology Infrastructure Resilienceenhancement of PR
PR.PS-01Platform Securityenhancement of PR
PR.PS-02Platform Securityenhancement of PR
PR.PS-03Platform Securityenhancement of PR
PR.PS-04Platform Securityenhancement of PR
PR.PS-05Platform Securityenhancement of PR
PR.PS-06Platform Securityenhancement of PR
RC.CO-03Incident Recovery Communicationenhancement of RC
RC.CO-04Incident Recovery Communicationenhancement of RC
RC.RP-01Incident Recovery Plan Executionenhancement of RC
RC.RP-02Incident Recovery Plan Executionenhancement of RC
RC.RP-03Incident Recovery Plan Executionenhancement of RC
RC.RP-04Incident Recovery Plan Executionenhancement of RC
RC.RP-05Incident Recovery Plan Executionenhancement of RC
RC.RP-06Incident Recovery Plan Executionenhancement of RC
RS.AN-03Incident Analysisenhancement of RS
RS.AN-06Incident Analysisenhancement of RS
RS.AN-07Incident Analysisenhancement of RS
RS.AN-08Incident Analysisenhancement of RS
RS.CO-02Incident Response Reporting and Communicationenhancement of RS
RS.CO-03Incident Response Reporting and Communicationenhancement of RS