Framework register / 2026-07-15

INTERNAL ASSESSMENT
DEFINED PLATFORM SCOPE
OPEN GAPS RECORDED

Claims should carry
their boundaries.

These statements describe a dated internal review of the current 1000 Beacons platform. They are not certification, endorsement, government approval, or a claim that every safeguard is implemented.

NIST CSF 2.0

Official framework source

Self-assessed against NIST CSF 2.0 . defined platform scope.

All 22 CSF categories were reviewed against repository, deployment and operating evidence. This is an internal category-level current profile, not an independent assessment.

Govern

Partial

Policies, ownership cadence and supplier-risk evidence are still being formalized.

Identify

Partial

Product inventory and risk analysis exist; the organization-wide registers remain in progress.

Protect

Partial

Access control, encryption, CI security and rate limits are implemented; training and recovery resilience remain open.

Detect

Strong

NDR, detection logic, audit events, telemetry health and incident correlation have production evidence.

Respond

Partial

Incident analysis and workflow exist; the company response and communication plan still requires an exercise.

Recover

Gap

Independent restore testing, formal RPO/RTO and recovery communications are not complete.

CIS Controls v8.1

Official controls source

Aligned with selected CIS Controls.

The selected mapping covers Controls 6, 8, 13 and 16. It does not represent complete CIS Controls implementation or an assessment performed by CIS.

06

Access Control Management

Signed identity, tenant membership, role permissions and protected administrative operations.

08

Audit Log Management

Application audit events, pipeline state and service logs; centralized alert retention remains in progress.

13

Network Monitoring and Defense

Normalized network telemetry, NDR relationships, infrastructure mapping and observed-source correlation.

16

Application Software Security

Typed boundaries, automated tests, static analysis, dependency scanning and production security headers.

ScopeDeployed console, API, workers, telemetry pipeline, data stores and supporting platform operations evidenced on 15 July 2026.

Change controlThe statements must be reviewed when architecture, operating controls or assessment evidence materially changes.

QuestionsRequest the current evidence register through [email protected].

Privacy controls

Your visit should be as controlled as your telemetry.

We use necessary cookies to keep the site working. Optional analytics help us understand which product pages are useful. Marketing cookies stay off unless you allow them.