If you’re used to working with a specific CCPA framework control, you can use this guide to identify its corresponding Unified Control.
For more information, and to view other framework control maps, visit Unified Controls FAQ.
CCPA Control | Unified Control |
AT-01-CCPA Awareness and Training Policy and Procedures | CTRL-245 Security and Privacy Awareness Training |
AT-03-CCPA Role-based Training | CTRL-245 Security and Privacy Awareness Training |
AT-04-CCPA Training Records | CTRL-245 Security and Privacy Awareness Training |
PT-01-CCPA Privacy Policy and Procedures | CTRL-622 Privacy Policy and Procedures |
PT-02-CCPA Authority to Process PII | CTRL-1161 Limiting Collection of Personal Information |
PT-03-CCPA PII Processing Purposes | CTRL-1161 Limiting Collection of Personal Information |
PT-04-CCPA Consent to Processing PII | CTRL-1142 Obtaining, Recording, and Revoking Consent |
PT-05-CCPA Privacy Notice | CTRL-1141 Lawful Basis for Personal Data Processing |
PT-07-CCPA Specific Categories of PII | CTRL-1142 Obtaining, Recording, and Revoking Consent |
Viewing Framework Controls in Thoropass
You can view the framework requirements satisfied by a Unified Control by clicking References on the side panel when viewing the Unified Control.
The IDs and names of all framework controls satisfied by the Unified Control are listed by framework. Click a framework control to view its description.