Skip to main content

What do you think of this service? Your feedback will help us to improve it.

Compliance monitoring and controls testing

Skill Definition

Compliance monitoring and controls testing refers to the implementations and processes used to verify ongoing conformance to security and/or legal and regulatory requirements against technical, physical, procedural and personnel controls. The principles of the skill are to define and implement processes to verify ongoing conformance to security and/or legal and regulatory requirements, and carry out security compliance checks in accordance with an appropriate methodology. Compliance monitoring and controls testing covers compliance checks and tests against technical, physical, procedural and personnel controls.

Awareness

Awareness

Describes the benefits of compliance monitoring and controls testing and can list the common compliance monitoring standards, e.g. ISO/IEC 27001, PCI DSS, IAMM

Maintains understanding of statutes and regulations

Follows documented procedures for compliance or regulations

 

 

 

Working

Working

Explains the main principles and processes involved in conducting a compliance monitoring and controls testing exercise

Reviews and implements alterations to operating procedures in response to changes in regulations or statutes

Educates/provides guidance on the implementation of regulations

 

 

Practitioner

Practitioner

Conducts compliance monitoring and controls testing

Understands wider regulatory context and how it can be applied to best meet the business needs of the organisation

Designs and leads implementation of business change, where required by regulation

Leads the implementation of regulations within the security function

 

 

 

Expert

Expert

Leads compliance monitoring and controls testing activities for an organisation

Champions opportunities that regulation and compliance can provide to an organisation at senior manager or board level

Promotes compliance or regulation within the security function

Reports significant non-compliance issues to senior management

Sign up to UK Government Security

Subscribe to our newsletters to receive notifications when changes to strategy, policy, standards, and guidance are published on the website.

Sign up now