graphgrc

SCF - CPL-03.1 - Independent Assessors

Mechanisms exist to utilize independent assessors to evaluate cybersecurity & data protection controls at planned intervals or when the system, service or project undergoes significant changes.

Mapped framework controls

GDPR

ISO 27002

NIST 800-53

Control questions

Does the organization utilize independent assessors to evaluate cybersecurity & data protection controls at planned intervals or when the system, service or project undergoes significant changes?