SDD-02—Whitepapers
>Control Description
Organization publishes whitepapers to its public website that describe the purpose, design and boundaries of the system and system components.
Theme
Process
Type
Preventive
Policy/Standard
Information Security Management Standard>Implementation Guidance
1. Ensure that the organization's public website have published whitepapers describing the purpose, design, and boundaries of the in-scope services and system components. 2. Ensure that these whitepapers are reviewed periodically for accuracy and approved by relevant personnel prior to publishing.
>Testing Procedure
1. Inspect the organization's public website to determine whether whitepapers for in-scope services are published.
>Audit Artifacts
E-SDD-02
>Framework Mappings
Cross-framework mappings provided by Adobe CCF Open Source under Creative Commons License.
Ask AI
Configure your API key to use AI features.