Canada ITSG-33 - IT Security Risk Management
ITSG-33: IT Security Risk Management Process

Canada ITSG-33 - IT Security Risk Management ITSG33-RMP-5: Security Assessment and Authorization

ITSG-33: assess implemented security controls and grant an authorization to operate (ATO) based on residual risk acceptance.

Other controls in ITSG-33: IT Security Risk Management Process

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.