Under active development Content is continuously updated and improved

GOV-15Operationalizing Cybersecurity & Data Protection Practices

Weight: 9

>Control Description

Mechanisms exist to compel data and/or process owners to operationalize cybersecurity and data protection practices for each Technology Asset, Application and/or Service (TAAS) under their control.

>Cross-Framework Mappings

NIST AI RMF

India SEBI Guidelines

New Zealand HISF Suppliers

EU AI Act (Detailed)

Saudi Arabia IoT Guidelines

IMO Maritime Cyber Risk

ISO 27701

ISO 29100

ISO 42001:2023 (Detailed)

NAIC Model Law 668

NIST SP 800-171A Rev 3

Data Privacy Management Principles

US Data Privacy Framework

CISA SSDAF

Executive Order 14028

SEC Cybersecurity Rule

Ask AI

Configure your API key to use AI features.