CORF WorkbookCyber and Operational Resilience Framework
-compliance
-maturity
Central Bank of Kuwait · version 1.0

Assess your posture against the CORF

Work through the framework's control baselines, declare what applies to your entity, record each control as compliant, non compliant, or not applicable, and set a maturity level for each sub domain. The workbook does the framework's arithmetic: compliance percentages and maturity levels roll up from sub domain to domain to an overall score, with the rule that a sub domain cannot reach Baseline maturity until it is fully compliant. Everything stays in your browser.

This workbook encodes the assessment methodology described in the CBK CORF (dual layered compliance and maturity, with sub domain to domain to overall roll up). It is a working aid, not the official CBK toolkit and not a substitute for a CBK approved assessor. The control catalog is extracted from the published CORF v1.0 and should be validated against the source document before formal use.