Governance

Subissues

Issuelinks
Bezeichnung Beschreibung
Inability to support business processes Insufficient cybersecurity and/or privacy practices that cannot securely support the organization's technologies & processes.
Incorrect controls scoping Missing or incorrect cybersecurity and/or privacy controls due to incorrect or inadequate control scoping practices.
Lack of roles & responsibilities Insufficient cybersecurity and/or privacy roles & responsibilities that cannot securely support the organization's technologies & processes.
Inadequate internal practices Insufficient cybersecurity and/or privacy practices that can securely support the organization's technologies & processes.
Inadequate third-party practices Insufficient Cybersecurity Supply Chain Risk Management (C-SCRM) practices that cannot securely support the organization's technologies & processes.
Lack of oversight of internal controls The inability to demonstrate appropriate evidence of due diligence and due care in overseeing the organization's internal cybersecurity and/or privacy controls.
Lack of oversight of third-party controls The inability to demonstrate appropriate evidence of due diligence and due care in overseeing third-party cybersecurity and/or privacy controls.
Illegal content or abusive action Disruptive content or actions that negatively affect business operations (e.g., abusive content, harmful speech, threats of violence, illegal content, etc.).
Impressum Deutsch Englisch