10.08

From Corrective Action Plan AZ
Revision as of 00:58, 16 August 2026 by Neil thibodaux (talk | contribs) (Created page with "'''Control Activities''' '''Principle 10 - Design Control Activities''' '''Attribute''' '''10.08''' - General control activities are designed to mitigate information security risks and are the actions established through policies and procedures that apply to all or a large segment of an entity's information technology. General control activities support the proper operation of the entity's information technology by creating a suitable environment for effective operatio...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)

Control Activities

Principle 10 - Design Control Activities

Attribute 10.08 - General control activities are designed to mitigate information security risks and are the actions established through policies and procedures that apply to all or a large segment of an entity's information technology. General control activities support the proper operation of the entity's information technology by creating a suitable environment for effective operation of application and user control activities. General control activities can be designed and implemented in either an automated or a manual manner.