Under active development Content is continuously updated and improved

IAO-02Assessments

Weight: 10

>Control Description

Mechanisms exist to formally assess the cybersecurity and data protection controls in Technology Assets, Applications and/or Services (TAAS) through Information Assurance Program (IAP) activities to determine the extent to which the controls are implemented correctly, operating as intended and producing the desired outcome with respect to meeting expected requirements.

>Cross-Framework Mappings

NIST SP 800-53 r5

NIST SP 800-171

FedRAMP Rev 5

NIST AI RMF

Canada ITSP 10.171

OSFI B-13

Australia ISM

China Cybersecurity Law

India SEBI Guidelines

New Zealand HISF Suppliers

EU AI Act (Detailed)

UK DEF STAN 05-138

ISO 42001:2023 (Detailed)

NIST SP 800-161

NIST SP 800-171 Rev 3

HIPAA Simplification 2013

Ask AI

Configure your API key to use AI features.