IAO-02—Assessments
Weight: 10
>Control Description
Mechanisms exist to formally assess the cybersecurity and data protection controls in Technology Assets, Applications and/or Services (TAAS) through Information Assurance Program (IAP) activities to determine the extent to which the controls are implemented correctly, operating as intended and producing the desired outcome with respect to meeting expected requirements.
>Cross-Framework Mappings
CMMC v2.0
NIST AI RMF
China Cybersecurity Law
EU AI Act (Detailed)
SOC 2 TSC (Detailed)
HIPAA Simplification 2013
Ask AI
Configure your API key to use AI features.