South Korea Cloud Security Assurance Program (CSAP)
Policy, Risk and Personnel

South Korea Cloud Security Assurance Program (CSAP) CSAP-RIA-18: Risk assessment and management

Providers shall conduct annual information security risk assessments covering assets within the certification scope, with risks treated through controls or formally accepted by management, and the risk register reviewed periodically.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Other controls in Policy, Risk and Personnel

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.