AAC-03: Information System Regulatory Mapping
Control Family:
Next Version:
- Cloud Controls Matrix v4.0:
- GRC-07: Information System Regulatory Mapping
Control Statement
Organizations shall create and maintain a control framework which captures standards, regulatory, legal, and statutory requirements relevant for their business needs. The control framework shall be reviewed at least annually to ensure changes that could affect the business processes are reflected.
[csf.tools Note: For more information on the Cloud Controls Matrix, visit the CSA Cloud Controls Matrix Homepage.]
Cloud Control Matrix is Copyright 2023 Cloud Security Alliance.