Terminology Index
Glossary
1801 terms
Showing 449-480 of 1801 terms
Control Mapping
Linking a single control to all the framework requirements it satisfies, so one well-run control can demonstrate compliance across several standards and gaps where no control meets a requirement become visible.
Organizations face many overlapping frameworks, and control mapping builds the crosswalk between their controls and each framework's requirements. A GRC analyst uses it to avoid duplicating effort, prove one control covers SOC 2, ISO 27001, and more at once, and expose requirements that nothing currently satisfies. Maintaining accurate mappings is recurring GRC work and the backbone of efficient multi-framework compliance.
Introduced in: GRC Analyst Fundamentals
Examples
- Mapping one access-review control to its SOC 2 and ISO 27001 requirements.
- Spotting a requirement that no existing control satisfies as a gap.
- Reusing a single control's evidence to satisfy multiple frameworks.
No related terms linked yet.
