글로벌 보안 및 가시성을 위한 지휘 매트릭스.
EchelonGraph는 능동적이고 인프라 전반에 걸친 가시성 맵핑을 제공합니다. 영지식(Zero-Knowledge) eBPF 텐타클의 3계층 아키텍처를 기반으로 폭발 반경 궤적을 실시간으로 계산합니다. 자동화된 글로벌 컴플라이언스 추적 기능이 내장되어 있습니다.
글로벌 지식 그래프
규제 기관에서 추출한 라이브 기술 매트릭스를 탐색하세요.
EchelonGraph는 능동적이고 인프라 전반에 걸친 가시성 맵핑을 제공합니다. 영지식(Zero-Knowledge) eBPF 텐타클의 3계층 아키텍처를 기반으로 폭발 반경 궤적을 실시간으로 계산합니다. 자동화된 글로벌 컴플라이언스 추적 기능이 내장되어 있습니다.
규제 기관에서 추출한 라이브 기술 매트릭스를 탐색하세요.
[KR] A standard aiming to ensure that APRA-regulated entities have resilient information security capabilities against information security incidents.
[KR] Germany’s regulation for critical infrastructures, obliging operators to implement state-of-the-art IT security and report significant disruptions.
[KR] A state statute intended to enhance privacy rights and consumer protection for residents of California, United States. It provides Californian consumers with the right to know, delete, and opt-out of the sale of their personal information.
[KR] The FBI's CJIS standard provides the minimum level of information technology security requirements acceptable for the transmission, processing, and storing of criminal justice information.
[KR] The Department of Defense framework to assess and enhance the cybersecurity posture of the Defense Industrial Base (DIB).
[KR] A comprehensive US state privacy law protecting privacy rights for Colorado consumers.
[KR] A California ballot proposition that significantly amends and expands the CCPA, creating new privacy rights for consumers and establishing the California Privacy Protection Agency (CPPA).
[KR] An EU regulation aiming to strengthen the IT security of financial entities such as banks, insurance companies and investment firms worldwide.
[KR] India's comprehensive privacy law regulating the processing of digital personal data inside India, as well as outside India if it involves offering goods/services to Data Principals in India.
[KR] A US government-wide program providing a standardized approach to security assessment, authorization, and continuous monitoring for cloud products and services.
[KR] United States legislation defining a comprehensive framework to protect government information, operations and assets against natural or man-made threats.
유럽 연합에서 제정하고 통과시킨 세계에서 가장 엄격한 개인정보 보호 및 보안법입니다.
[KR] United States federal statute enacted by the 104th United States Congress and signed into law by President Bill Clinton to modernize the flow of healthcare information, stipulate how personally identifiable information maintained by the healthcare and healthcare insurance industries should be protected from fraud and theft.
[KR] The Health Information Technology for Economic and Clinical Health Act expanded HIPAA's security requirements and drastically increased the civil penalty boundaries.
[KR] A certifiable framework providing organizations with a comprehensive, flexible, and efficient approach to regulatory compliance and risk management, highly adopted in healthcare.
[KR] South Korean certification system for information security and personal information protection. Evaluates whether an enterprise's information security and privacy systems are properly established.
[KR] An international standard on how to manage information security. The standard details requirements for establishing, implementing, maintaining and continually improving an information security management system (ISMS).
[KR] Brazil's statutory foundation for data privacy, heavily modeled after the EU's GDPR, creating a unified legal framework for personal data use in Brazil.
[KR] Technology Risk Management guidelines published by MAS, outlining risk management principles and best practice standards to guide financial institutions.
[KR] EU-wide legislation on cybersecurity, replacing the original NIS Directive, expanding the scope of sectors and tightening security and reporting requirements.
[KR] An Australian regulation under the Privacy Act 1988 requiring entities to notify affected individuals and the OAIC when a data breach is likely to result in serious harm.
[KR] State level privacy framework extensions mimicking DPDP regulations for hyper-local municipalities.
[KR] Regulation 10 CFR 73.54 mandates that nuclear power plant licensees provide high assurance that digital computer and communication systems and networks are adequately protected.
[KR] New York State Department of Financial Services rules forcing strict cybersecurity postures for all covered financial institutions to combat the growing threat posed by cyber-criminals.
[KR] An information security standard for organizations that handle branded credit cards from the major card schemes. The PCI Standard is mandated by the card brands but administered by the Payment Card Industry Security Standards Council.
[KR] Saudi Arabia's comprehensive data privacy law designed to protect personal data processing and regulate data sharing limits.
[KR] Singapore's statute governing the collection, use, and disclosure of personal data. Reconciles data protection rights with the need of organizations to use data for legitimate purposes.
[KR] The Canadian federal privacy law for private-sector organizations. It sets out the ground rules for how businesses must handle personal information in the course of commercial activity.
[KR] A hypothetical or specific regional equivalent focused on immediate biometric and identity verification laws spreading across the APAC region.
[KR] South Africa's comprehensive data protection legislation, promoting the protection of personal information processed by public and private bodies.
[KR] The previous mechanism to transfer personal data from the EU to the US, invalidated by Schrems II. Replaced by the new EU-US Data Privacy Framework.
[KR] An audit focusing solely on a service organization's controls that are likely to be relevant to an audit of a user entity's financial statements.
서비스 제공업체가 조직의 이익과 고객의 개인정보를 보호하기 위해 데이터를 안전하게 관리하도록 보장하는 감사 절차입니다.
[KR] A public report of internal controls over security, availability, processing integrity, and confidentiality (like SOC 2) but intended for a general audience without the deep technical details.
[KR] Federal law establishing sweeping auditing and financial regulations for public companies, specifically focusing on corporate disclosure and internal fraud controls.
[KR] An assessment and exchange mechanism for information security in the global automotive industry, developed by the ENX Association and the VDA.
[KR] A standardized approach for security assessment, authorization, and continuous monitoring of cloud computing services that process the data of a Texas state agency.
[KR] The UK's implementation of the EU GDPR, retained in domestic law following Brexit, governing the processing of personal data in the UK.
[KR] A comprehensive US state privacy law granting Virginia consumers distinct rights regarding their personal data, fundamentally resembling CCPA/GDPR.
[KR] US Federal memo requiring civilian executive branch agencies to meet specific cybersecurity standards and objectives by the end of Fiscal Year 2024.