manage.get.gov/docs/compliance/dist/system-security-plans/ato/ca-7.1.md
Logan McDonald 1d3dfdb8d5
Add compliance documentation to source control (#116)
* add initial setup of compliance-trestle
2022-09-14 08:46:43 -04:00

1.4 KiB

implementation-status control-origination
c-not-implemented
c-inherited-cloud-gov
c-inherited-cisa
c-common-control
c-system-specific-control

ca-7.1 - [catalog] Independent Assessment

Control Statement

Employ independent assessors or assessment teams to monitor the controls in the system on an ongoing basis.

Control guidance

Organizations maximize the value of control assessments by requiring that assessments be conducted by assessors with appropriate levels of independence. The level of required independence is based on organizational continuous monitoring strategies. Assessor independence provides a degree of impartiality to the monitoring process. To achieve such impartiality, assessors do not create a mutual or conflicting interest with the organizations where the assessments are being conducted, assess their own work, act as management or employees of the organizations they are serving, or place themselves in advocacy positions for the organizations acquiring their services.

Control assessment-objective

independent assessors or assessment teams are employed to monitor the controls in the system on an ongoing basis.


What is the solution and how is it implemented?

Add control implementation description here for control ca-7.1