VM-18—External Information Security Inquiries
>Control Description
Organization reviews information-security-related inquiries, complaints, and disputes.
Theme
Process
Type
Preventive
Policy/Standard
Incident Management Policy>Implementation Guidance
1. Ensure a process has been defined and documented to receive information related inquiries, complaints, and disputes. 2. Ensure all of the received inquiries, disputes, and compliants are reviewed and resolved as applicable.
>Testing Procedure
1. Inspect and validate that a process has been defined and documented to receive information related inquiries, complaints, and disputes. 2. Validate for a sample query that it was reviewed and resolved as applicable.
>Audit Artifacts
E-IR-02
E-VM-17
>Framework Mappings
Cross-framework mappings provided by Adobe CCF Open Source under Creative Commons License.
Ask AI
Configure your API key to use AI features.