Risk Management Policy and Procedures
Provide your risk management policy.
The evidence should demonstrate the:
Risk assessment process, including objectives, identification, rating, and mitigation
Requirement for risk assessments to be completed at least once per year
Requirement for policy to be reviewed and approved by management
Associated Unified Control ID | Associated Framework Control |
CTRL-646 | LCL-18 |