Back to Frameworks

BIMCO Cyber Security

International
v2021
8 domains
26 controls

BIMCO Guidelines on Cyber Security Onboard Ships

Verified

Framework summaries on this platform are AI-assisted interpretations for educational and compliance planning purposes. They do not reproduce or replace the official standards. Refer to the authoritative source for the definitive text. Framework names and trademarks belong to their respective organisations.

Framework Domains (8)

BIMCO Ch10: Respond and Recover

4 controls
Controls in the BIMCO Ch10: Respond and Recover domain of BIMCO Cyber Security4 controls
CodeTitle
BIMCO-10.2The four phases of incident response
BIMCO-10.3Recovery plan
BIMCO-10.4Data recovery capability
BIMCO-10.5Investigating cyber incidents

BIMCO Ch1: Cyber Security and Risk Management

5 controls
Controls in the BIMCO Ch1: Cyber Security and Risk Management domain of BIMCO Cyber Security5 controls
CodeTitle
BIMCO-1.2Senior management involvement
BIMCO-1.3Roles, responsibilities and tasks
BIMCO-1.4Differences between IT and OT systems
BIMCO-1.5Plans and procedures
BIMCO-1.8Relationship with vendors and other external parties

BIMCO Ch2: Identify Threats

2 controls
Controls in the BIMCO Ch2: Identify Threats domain of BIMCO Cyber Security2 controls
CodeTitle
BIMCO-2.1Threat actors
BIMCO-2.2Types of cyber threats

BIMCO Ch3: Identify Vulnerabilities

5 controls
Controls in the BIMCO Ch3: Identify Vulnerabilities domain of BIMCO Cyber Security5 controls
CodeTitle
BIMCO-3.1Common vulnerabilities
BIMCO-3.3Typical vulnerable systems
BIMCO-3.4Ship to shore interface
BIMCO-3.6Remote access
BIMCO-3.7System and software maintenance

BIMCO Ch4-6: Likelihood, Impact and Risk Assessment

4 controls
Controls in the BIMCO Ch4-6: Likelihood, Impact and Risk Assessment domain of BIMCO Cyber Security4 controls
CodeTitle
BIMCO-4Assessing the likelihood
BIMCO-5.1Impact assessment (CIA model)
BIMCO-6.2The four phases of a risk assessment
BIMCO-6.3Third party risk assessments

BIMCO Ch7: Develop Protection Measures

3 controls
Controls in the BIMCO Ch7: Develop Protection Measures domain of BIMCO Cyber Security3 controls
CodeTitle
BIMCO-7.1Defence in depth and in breadth
BIMCO-7.2Technical protection measures
BIMCO-7.3Procedural protection measures

BIMCO Ch8: Develop Detection Measures

2 controls
Controls in the BIMCO Ch8: Develop Detection Measures domain of BIMCO Cyber Security2 controls
CodeTitle
BIMCO-8.1Detection, logging, blocking and alerts
BIMCO-8.2Malware detection

BIMCO Ch9: Establish Contingency Plans

1 controls
Controls in the BIMCO Ch9: Establish Contingency Plans domain of BIMCO Cyber Security1 controls
CodeTitle
BIMCO-9Establish contingency plans

Maps to 1 other framework

26 total controls
NIST Cybersecurity Framework 2.0
26 source controls mapped|17 target controls covered
100%

Frequently Asked Questions

What is BIMCO Cyber Security?

BIMCO Cyber Security is a compliance framework from International with 8 domains and 26 controls. BIMCO Guidelines on Cyber Security Onboard Ships It is used by organisations to establish and maintain compliance with industry standards and regulatory requirements.

How many controls does BIMCO Cyber Security have?

BIMCO Cyber Security has 26 controls organised across 8 domains. The largest domains are BIMCO Ch1: Cyber Security and Risk Management (5 controls), BIMCO Ch3: Identify Vulnerabilities (5 controls), BIMCO Ch10: Respond and Recover (4 controls). Each control defines specific requirements that organisations must implement to achieve compliance.

What frameworks does BIMCO Cyber Security map to?

BIMCO Cyber Security maps to 1 other compliance frameworks. The top mapping partners are NIST Cybersecurity Framework 2.0 (100% coverage). Use our comparison tool to explore control-level mappings between frameworks.

How do I get started with BIMCO Cyber Security compliance?

Start your BIMCO Cyber Security compliance journey by running a self-assessment on our platform to identify your current compliance posture. Our AI advisory can answer specific questions about BIMCO Cyber Security requirements, and cross-framework mapping helps you leverage existing controls from other frameworks you may already comply with. Create a free account to access all 26 controls and track your progress.

Start Your Compliance Journey

Create a free account to run self-assessments, get AI advisory, and track your compliance progress across 700 frameworks.

Get Started Free →

Free forever — no credit card required