Organization should conduct internal information security audits

High Cross-cloud General manual-iso-internal-audit

How to fix it

Conduct internal audits at planned intervals to verify that the information security management system conforms to requirements and is effectively implemented. Report findings to management.

How to verify

  1. Verify audit schedule and most recent audit report
  2. Confirm management review of audit findings
  3. Verify corrective actions from audit findings are tracked

Compliance frameworks

Is your environment compliant with this rule?

CGPulse checks it — and 621 others — against your Azure and AWS accounts with read-only access.

Run a free scan

Related Cross-cloud rules

Rejoining the server...

Rejoin failed... trying again in seconds.

Failed to rejoin.
Please retry or reload the page.

The session has been paused by the server.

Failed to resume the session.
Please reload the page.