ISO 37001:2016
Operation – ISO 37001:2016

ISO 37001:2016 8.3: 8.3 Financial controls

Put financial controls in place that manage bribery risk. Annex A.11 gives examples: separating who starts a payment from who approves it, tiered approval authority, confirming that the person being paid was properly appointed and that their work was approved, two signatures on payment approvals, supporting documents attached to approvals, limits and controls on cash, accurate payment descriptions in the accounts, periodic management review of significant transactions, and periodic independent financial audits with rotation of the auditor.

Maintained by Gerard Blokdyk

What else in your programme already covers this

This control maps to 11 controls across 8 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.

  • FCPA-02 Books and Records Accuracy
  • FCPA-03 Internal Accounting Controls
  • FCPA-15 Distributor and Reseller Margin Analysis
  • FCPA-17 Books and Records for Non-Issuer Domestic Concerns

ISO 22000:2018 · 1 control

  • 8.3 Traceability system

ISO 22301:2019 · 1 control

  • 8.3 Business continuity strategies and solutions

ISO 37301:2021 · 1 control

  • 8.3 Raising concerns

ISO 55001:2014 · 1 control

  • 8.3 Outsourcing

ISO 9001:2015 · 1 control

  • 8.3 Design and development of products and services

ISO/IEC 42001:2023 · 1 control

  • 8.3 AI risk treatment

Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.

Other controls in Operation – ISO 37001:2016

Query this from an agent

The graph holds this control, the 11 it maps to, and the evidence behind each claim, over MCP and REST.