Currently, the best practice page intro references CIS, NSA, and BSI but has no EU-level framework. EU member states are actively implementing NIS2 (or supposed to be). NIS2 mandates cryptography and certificate lifecycle management as baseline security measures. If the intro references other baseline security measures, it should definitely reference this one.
This could also be a starting point for a compliance mapping table linking each recommendation to specific controls across these frameworks.
Currently, the best practice page intro references CIS, NSA, and BSI but has no EU-level framework. EU member states are actively implementing NIS2 (or supposed to be). NIS2 mandates cryptography and certificate lifecycle management as baseline security measures. If the intro references other baseline security measures, it should definitely reference this one.
This could also be a starting point for a compliance mapping table linking each recommendation to specific controls across these frameworks.