STA-11: Is there a process for conducting internal assessments at least annually to
confirm the conformance and effectiveness of standards, policies, procedures,
and SLA activities?
The scope of assessments should include STA-related policies and procedures while validating adherence to STA controls and SLA requirements. Applicability includes assessing conformance and effectiveness across the supply chain, including the total cloud service technology stack (as appropriate). Refer to A&A-02.
Control implemented
Control ownership
Description
Define and implement a process for conducting internal assessments
to confirm conformance and effectiveness of standards, policies, procedures,
and service level agreement activities at least annually.