EM-05—Cyber Security Insurance
>Control Description
Organization purchases cyber security insurance to mitigate risk of material financial impact that could result from a cyber security event.
Theme
Process
Type
Corrective
Policy/Standard
Information Systems Operations Policy>Implementation Guidance
1. Ensure cyber security insurance is being purchased by the organization and is active for the audit period. 2. Ensure that a process is created for renewal of Cyber Security Insurance.
>Testing Procedure
1. Obtain and inspect the latest cyber security insurance to verify that the insurance policy is active for the audit period.
>Audit Artifacts
E-EM-10
>Framework Mappings
Cross-framework mappings provided by Adobe CCF Open Source under Creative Commons License.
Ask AI
Configure your API key to use AI features.