Mechanisms exist to define evidence sampling criteria for cybersecurity and/or data protection assessments.
Does the organization define evidence sampling criteria for cybersecurity and/or data protection assessments?
- new control