CCI-002070
CCI-002070 Definition
Develop a control assessment plan that describes the scope of the assessment including assessment team, and assessment roles and responsibilities.
Status | |
Type | CheckType.policy |
Master Assessment Datasheet
Implementation Guidance
The organization being inspected/assessed lists their assessment team members and their associated assessment roles and responsibilities in the security assessment plan.
Validation Procedures
The organization conducting the inspection/assessment obtains and examines the security assessment plan to ensure the organization being inspected/assessed lists their assessment team members and their associated assessment roles and responsibilities in the security assessment plan.
Compelling Evidence
1.) Signed and dated Security Assessment Plan which lists assessment team members and their associated assessment roles and responsibilities