22. Is additional work required by the assessor to generate the NIST Cybersecurity Framework Report?
25. Is the Payment Card Industry – Data Security Standard (PCI-DSS) a Risk Management Framework (RMF)?