|
+COM-03.01AC |
1. ÜbersichtCOM-03.01ACBased on a risk assessment (cf. OIS-07) and technical feasibility, the cloud service provider decides to which extent internal audits are supplemented by procedures to automatically monitor applicable requirements of policies and procedures with regard to the following aspects:1. Configuration of system components to provide the cloud service within the cloud service provider's area of responsibility; 2. Performance and availability of these system components; 3. Response time to incidents and security incidents; and 4. Recovery time (time to completion of error handling).
1.1 Referenzen1.2 Identifizierte Anforderungen1.2 Related Regulation2. Identifizierte Anforderungen
3. Related Regulations
|