Under active development Content is continuously updated and improved

TPM-05.8Third-Party Attestation (3PA)

Weight: 5

>Control Description

Mechanisms exist to obtain an attestation from an independent Third-Party Assessment Organization (3PAO) that provides assurance of conformity with specified statutory, regulatory and contractual obligations for cybersecurity and data protection controls, including any flow-down requirements to contractors and subcontractors.

>Cross-Framework Mappings

Ask AI

Configure your API key to use AI features.