SecFrame Explorer
controls.intelligence
SearchPricing
AI lookups:3/3left
3/3
Sign in
FrameworksCSA CCMAudit & Assurance
// Level 3 · Controls

Audit & Assurance

AUD domain controls.

AAC-01Medium

Audit and Assurance Policy and Procedures

Establish, document, approve, communicate, apply, evaluate and maintain audit and assurance policies and procedures.

AAC-02Medium

Independent Assessments

Conduct independent audit and assurance assessments according to relevant standards at least annually.

AAC-03Medium

Risk Based Planning Assessment

Perform independent audit and assurance assessments according to risk-based plans and policies.

AAC-04Medium

Requirements Compliance

Verify compliance with all relevant standards, regulations, legal/contractual, and statutory requirements applicable to the audit.

AAC-05Medium

Audit Management Process

Define and implement an audit management process to support audit planning, risk analysis, security control assessment, conclusion, remediation schedules, report generation, and review of past reports and supporting evidence.

AAC-06Medium

Remediation

Establish, document and implement processes to apply audit findings and remediation action plans to manage risks identified.

// SecFrame Explorer — security frameworks, decoded
TermsPricingRefundsPrivacy·Powered by arnav.au