graphgrc

SCF - TPM-04.4 - Third-Party Processing, Storage and Service Locations

Mechanisms exist to restrict the location of information processing/storage based on business requirements.

Mapped framework controls

GDPR

ISO 27002

SOC 2

Control questions

Does the organization restrict the location of information processing/storage based on business requirements?