unified
UC-GOV-02 — Understand organizational context and stakeholder expectations
Identify and document the organization's mission, its internal and external stakeholders and their needs and expectations, the critical objectives, capabilities, and services that stakeholders depend on, and the outcomes, capabilities, and services the organization itself depends on. Use this business context to scope and prioritize risk management activities, communicate it to those who need it, and refresh it when the business environment changes.
Record JSON · Open in map · Data retrieval guide
Catalog revision: 24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028. A connection does not establish full coverage.
Attributes
- domain
- Governance, Policy & Oversight
- type
- preventive
- category
- administrative
Details
- unified_id
- UC-GOV-02
- title
- Understand organizational context and stakeholder expectations
- statement
- Identify and document the organization's mission, its internal and external stakeholders and their needs and expectations, the critical objectives, capabilities, and services that stakeholders depend on, and the outcomes, capabilities, and services the organization itself depends on. Use this business context to scope and prioritize risk management activities, communicate it to those who need it, and refresh it when the business environment changes.
- domain
- Governance, Policy & Oversight
- control_type
- preventive
- control_category
- administrative
- members
- framework
- nist-csf-2
- control_id
- GV.OC-01
- coverage
- full
- relationship
- superset_of
- framework
- nist-csf-2
- control_id
- GV.OC-02
- coverage
- full
- relationship
- superset_of
- framework
- nist-csf-2
- control_id
- GV.OC-04
- coverage
- full
- relationship
- superset_of
- framework
- nist-csf-2
- control_id
- GV.OC-05
- coverage
- full
- relationship
- superset_of
- framework
- coso-erm
- control_id
- E6
- coverage
- full
- relationship
- superset_of
- guidance
Source
No record-specific source URL is provided.
Connections
- UC-GOV-02 — Understand organizational context and stakeholder expectations mitigates Strategic misalignment and execution failure
- strength
- related
- rationale
- Documenting mission and stakeholder needs is a foundational input to strategy alignment, but the operative alignment control is strategy-setting (UC-GOV-12), not context documentation alone.
- ISO 27001 Stage 1 ISMS Documentation Review tests UC-GOV-02 — Understand organizational context and stakeholder expectations
- UC-GOV-02 — Understand organizational context and stakeholder expectations maps_to E6 — Analyzes Business Context
- framework
- coso-erm
- control_id
- E6
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- 2017
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- Strategic Context & Objectives Alignment Cycle operates UC-GOV-02 — Understand organizational context and stakeholder expectations
- UC-GOV-02 — Understand organizational context and stakeholder expectations mitigates Stakeholder trust and social-license erosion
- strength
- related
- rationale
- Identifying stakeholder needs and expectations lets the organization meet them, sustaining trust.
- UC-GOV-02 — Understand organizational context and stakeholder expectations maps_to GV.OC-04 — Organizational Context: Critical objectives, capabilities, and services that external stakeholders depend on or expect from the organization are understood and communicated
- framework
- nist-csf-2
- control_id
- GV.OC-04
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- 2.0
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- CSF 2.0 Profile & Maturity Assessment oversees UC-GOV-02 — Understand organizational context and stakeholder expectations
- UC-GOV-02 — Understand organizational context and stakeholder expectations maps_to GV.OC-02 — Organizational Context: Internal and external stakeholders are understood, and their needs and expectations regarding cybersecurity risk management are understood and considered
- framework
- nist-csf-2
- control_id
- GV.OC-02
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- 2.0
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- UC-GOV-02 — Understand organizational context and stakeholder expectations maps_to GV.OC-01 — Organizational Context: The organizational mission is understood and informs cybersecurity risk management
- framework
- nist-csf-2
- control_id
- GV.OC-01
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- 2.0
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- UC-GOV-02 — Understand organizational context and stakeholder expectations maps_to GV.OC-05 — Organizational Context: Outcomes, capabilities, and services that the organization depends on are understood and communicated
- framework
- nist-csf-2
- control_id
- GV.OC-05
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- 2.0
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.