Control activities mitigating risk
Summary
The entity selects and develops control activities that contribute to the mitigation of risks to the achievement of objectives to acceptable levels.
control activitiesrisk mitigation
Read the full official text: https://www.aicpa-cima.com/resources/download/2022-trust-services-criteria
← Criterion CC4.2
Evaluating and communicating deficiencies
Criterion CC5.2 →
General controls over technology
Track SOC 2 criterion CC5.1 as evidence
eurocompliant maps this obligation to a checklist task and the evidence that satisfies it, alongside every other framework you follow.
Start free trial