GOV-03—Periodic Review & Update of Cybersecurity & Data Protection Program
Weight: 7
>Control Description
Mechanisms exist to review the cybersecurity and data protection program, including policies, standards and procedures, at planned intervals or if significant changes occur to ensure their continuing suitability, adequacy and effectiveness.
>Cross-Framework Mappings
NIST SP 800-53 r5
PCI DSS v4.0.1
Canada ITSP 10.171
Spain ENS
SOC 2 TSC (Detailed)
GovRAMP
NIST SP 800-161
NIST SP 800-171 Rev 3
NIST SP 800-171A Rev 3
45 CFR 155.260
HIPAA Simplification 2013
Ask AI
Configure your API key to use AI features.