Regulatory requirements: Obligations that organizations need to meet to comply with relevant laws, regulations, or standards set by governmental or oversight bodies. These requirements often pertain to data privacy, financial reporting, operational safety, and similar critical aspects within an organization’s operations. Non-compliance can result in legal consequences, fines, or damage to reputation, emphasizing the necessity of compliance management systems to ensure these requirements are met.
Categories: CC D1: Security Principles | CCSP D6: Legal - Risk and Compliance | CISM D1: Information Security governance | CISSP D1: Security and Risk Management | Security+ D5: Security Program Management and Oversight | SSCP D3: Risk Identification Monitoring and Analysis
Related Articles:
- Glossary: Security frameworks
- Glossary: Reporting in incident management
- Glossary: Privacy policy
- Glossary: Off-boarding
- Glossary: Log management
- Glossary: National Institute for Standards and Technology (NIST)
- Glossary: Investigation
- Glossary: HITRUST (Health Information Trust Alliance)
- Glossary: Decertification
- Glossary: Constrained Data Item (CDI)