IAO-03—System Security & Privacy Plan (SSPP)
Weight: 7
>Control Description
Mechanisms exist to generate System Security & Privacy Plans (SSPPs), or similar document repositories, to identify and maintain key architectural information on each critical Technology Assets, Applications and/or Services (TAAS), as well as influence inputs, entities and TAAS, providing a historical record of the data and its origins.
>Cross-Framework Mappings
CMMC v2.0
NIST AI RMF
EU AI Act
Canada ITSP 10.171
EU AI Act (Detailed)
SOC 2 TSC (Detailed)
NIST SP 800-171 Rev 3
NIST SP 800-171A Rev 3
A.03.04.11.a[02]
CompareA.03.04.11.a[03]
CompareA.03.04.11.b[01]
CompareA.03.04.11.b[02]
CompareA.03.15.02.ODP[01]
CompareA.03.15.02.a.01
CompareA.03.15.02.a.02
CompareA.03.15.02.a.03
CompareA.03.15.02.a.04
CompareA.03.15.02.a.05
CompareA.03.15.02.a.06
CompareA.03.15.02.a.07
CompareA.03.15.02.a.08
CompareA.03.15.02.b[01]
CompareA.03.15.02.b[02]
CompareA.03.15.02.c
CompareNIST SP 800-171A
Ask AI
Configure your API key to use AI features.