BAS Cybersecurity Framework Correlation Matrix

Interactive visualization of correlations between ONR SyAPs, NIST CSF 2.0, and ISO 27001

ONR SyAPs

Nuclear

UK nuclear industry security framework with outcome-focused regulation

17Total Principles
10Fundamental
7Key Principles

NIST CSF 2.0

Cross-sector

Voluntary framework for managing cybersecurity risks across all sectors

6Core Functions
25Categories
GlobalScope

ISO 27001

International

International standard for information security management systems

93Total Controls
7Clauses
4Control Themes

Correlation Matrix

Governance & Leadership
Strategic oversight, governance structures, and organizational leadership
85%
Risk Management
Risk assessment, management strategies, and mitigation approaches
90%
Human Resources & Personnel
Personnel security, training, and human performance management
75%
Physical Security
Physical protection measures and environmental security
70%
Cyber Security & Information Assurance
Technical cybersecurity controls and information protection
88%
Supply Chain Management
Third-party risk management and supplier security
65%
Incident Response & Recovery
Emergency response, incident management, and business continuity
82%
Operations & Maintenance
Operational security, system maintenance, and secure development
73%
Compliance & Oversight
Regulatory compliance, auditing, and performance monitoring
68%

Select a correlation area to view details

Click on any correlation area in the matrix above to see detailed mappings between frameworks.

Legend

High Correlation (80%+)
Medium Correlation (60-79%)
ONR SyAPs
NIST CSF 2.0
ISO 27001