Skip to content

Sorin Mustaca – Security & Technology

Cybersecurity, AI, Automotive Security, Antimalware Software, Product Management, Agile, Secure Software Development, SSDLC

  • Security
    • IT Security News English
    • IT Sicherheit News Deutsch
    • Securitate in limba Romana
    • Tipps und Ratschläge – IT Sicherheit
  • News
    • In the news
    • Quoted
  • About
    • About me
    • Contact
    • “Improve your security” free eBook
    • Scuba Diving Blog
  • Privacy Policy
  • Cyber Security Consulting
  • Work with me

Tag: mapping

SOC 2 Type 2 mapping to Secure SDLC Requirements
Article Cybersecurity ECS Educational General Security SOC2 SSDLC

SOC 2 Type 2 mapping to Secure SDLC Requirements

We started to talk about the SOC2 Type 2 certification and I feel that we neglected it a bit. I wrote a bit about SDLC, Secure SDLC in particular, but now it is time to bring them together.   SOC 2 Type 2 and Secure SDLC — the big picture SOC 2 Type 2 evaluates whether […]

April 30, 2026April 29, 2026
Maping NIS2 requirements to the ISO 27001:2022 framework
Certification Cybersecurity ECS Educational General ISO 27001 NIS2

Maping NIS2 requirements to the ISO 27001:2022 framework

We described here the process needed to perform a gap analysis for NIS2, but we did not add the details on how to approach this. This article references on the ISO27001:2022 series, especially on the description of the Annex A controls. Make sure you are familiar with the ISO 27oo1:2022 requirements and the with the […]

April 25, 2024April 28, 2026
Sorin Mustaca on Twitter Sorin Mustaca on Facebook View Sorin Mustaca's profile on LinkedIn Sorin Mustaca on XING
Subscribe to me on Substack

Categories

Top Posts & Pages

  • Implementing ISO 27001:2022 Annex A.18 - Compliance
  • Sign files unattended in batch mode while having an eToken (no password popup!) (updated)
  • Defender Application Control or Defender SmartScreen - what can you do to not be blocked by it
  • NIS2: 1. Perform a gap analysis
  • TISAX: new Catalogue ISA v6 available
  • Understanding ISO 27001:2022 Annex A.8 - Asset Management
  • Understanding ISO 27001:2022 Annex A.14 - System Acquisition, Development, and Maintenance
  • How to implement an Information Security Management System (ISMS)
  • Implementing ISO 27001:2022 Annex A.16 - Information Security Incident Management

Work with me

Endpoint Cybersecurity

www.endpoint-cybersecurity.com

- Consulting in building your security products for Windows, MacOS, Linux, iOS, Android
- Pentests and Security tests for applications
- Cybersecurity Management Systems for Automotive(CSMS/ISO 21434, WP.29, ISO 16949)
- Support in TISAX(r) audits
- Support in ISO 27001, NIS2, CRA audits

Subscribe to Blog via Email

Enter your email address to subscribe to this blog and receive notifications of new posts by email.

Join 151 other subscribers

Pages

  • About
  • Contact
  • Cybersecurity and AI Collection
  • Download the free eBook
  • In the news
  • ISO 27001:2022 Collection
  • NIS2 Collection
  • Privacy Policy
  • Securitate in limba Romana
  • Tipps und Ratschläge – IT Sicherheit
  • Work with me
RSS IT Security News (EN)
  • Wordfence Intelligence Weekly WordPress Vulnerability Report (July 27, 2026 to August 2, 2026)
  • Inside the Modern SOC: The Identity Front Door
  • OpenAI pledges to add Astra security as Anthropic loosens Fable’s leash
  • Friday Squid Blogging: Arctic Bobtail Squid Video
  • Meta ordered to pay $942 million over harm to children
  • Secure Agent Harness Execution: Preventing Escape
  • AI chat bots are sliding into League of Legends friend requests
  • Security researchers scanned the Polish web and found courts, hospitals, and airports at risk of hacks
  • Hackers Target Blackstone, CME and Other Wall Street Firms in Phone-Based Scam
  • Imperva Customers Protected Against Novel HTTP Desync Attacks
RSS IT Sicherheitsnews (DE)
  • Fake-Abbuchung über 909 Euro: Paypal-Kunden sollten diese Phishing-Mail kennen
  • Nach 11 Jahren: KI Claude knackt Passwort einer Bitcoin-Wallet mit 400.000 Dollar
  • Über 70 Kreativ-Tools integriert: Adobe-Plugin macht ChatGPT zur Canva-Alternative
  • Windows 11: Warum deinstallierte Apps nicht immer Speicherplatz freigeben
  • [UPDATE] [mittel] libtasn1: Schwachstelle ermöglicht Denial of Service
RSS Improve Your Security Ebook
  • Protecting Our Teens: A Guide to Creating Awareness About Online Dangers
  • A Guide to Teaching Online Safety and Navigating Cyber Dangers
  • How to easily secure your smartphone
  • Conclusion: The Ultimate Parent Guide for Protecting Your Child on the Internet
  • Online predators: The Ultimate Parent Guide for Protecting Your Child on the Internet

Copyright © 2001 - 2026 Sorin Mustaca – Security & Technology | Marvel Blog by Ascendoor | Powered by WordPress.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}