CCI-003797
CCI-003797 Definition
Defines the frequency of which feedback is provided on organizational training results.
| Status | |
| Type | CheckType.policy |
Master Assessment Datasheet
Implementation Guidance
Determine if feedback on Organizational training results is provided [AT-06_ODP[01]; frequency at which to provide feedback on Organizational training results is defined] to [AT-06_ODP[02]; personnel to whom feedback on Organizational training results will be provided is/are assigned].
Validation Procedures
Examine: [SELECT FROM: Security awareness and training policy; procedures addressing security training records; security awareness and training records; security plan; other relevant documents or records]. Interview: [SELECT FROM: Organizational personnel with information security training record retention responsibilities]. Test: [SELECT FROM: Mechanisms supporting the management of security training records].