unified
UC-GOV-07 — Hold individuals accountable for control responsibilities
Management requires all personnel to apply information security in accordance with established policies and procedures and holds individuals accountable for their internal control responsibilities. Accountability is enforced through defined expectations, documented rules of behavior acknowledged before access is granted and re-acknowledged when updated, performance measures and incentives, and disciplinary consequences for violations.
Record JSON · Open in map · Data retrieval guide
Catalog revision: 24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028. A connection does not establish full coverage.
Attributes
- domain
- Governance, Policy & Oversight
- type
- preventive
- category
- administrative
Details
- unified_id
- UC-GOV-07
- title
- Hold individuals accountable for control responsibilities
- statement
- Management requires all personnel to apply information security in accordance with established policies and procedures and holds individuals accountable for their internal control responsibilities. Accountability is enforced through defined expectations, documented rules of behavior acknowledged before access is granted and re-acknowledged when updated, performance measures and incentives, and disciplinary consequences for violations.
- domain
- Governance, Policy & Oversight
- control_type
- preventive
- control_category
- administrative
- members
- framework
- soc2
- control_id
- CC1.5
- coverage
- full
- relationship
- superset_of
- framework
- coso-ic
- control_id
- P5
- coverage
- full
- relationship
- superset_of
- framework
- iso-27001
- control_id
- A.5.4
- coverage
- full
- relationship
- superset_of
- framework
- nist-800-53
- control_id
- PL-4
- coverage
- full
- relationship
- superset_of
- guidance
Source
No record-specific source URL is provided.
Connections
- Code of Conduct & Workforce Accountability Cycle operates UC-GOV-07 — Hold individuals accountable for control responsibilities
- ISO 27001 Stage 2 Annex A Controls Audit tests UC-GOV-07 — Hold individuals accountable for control responsibilities
- UC-GOV-07 — Hold individuals accountable for control responsibilities maps_to A.5.4 — Management responsibilities
- framework
- iso-27001
- control_id
- A.5.4
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- 2022
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- UC-GOV-07 — Hold individuals accountable for control responsibilities maps_to PL-4 — Rules of Behavior
- framework
- nist-800-53
- control_id
- PL-4
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- Rev. 5
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- UC-GOV-07 — Hold individuals accountable for control responsibilities maps_to P5 — The organization holds individuals accountable for their internal control responsibilities in the pursuit of objectives.
- framework
- coso-ic
- control_id
- P5
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- 2013
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- Quarterly 302/906 Sub-Certification Cascade operates UC-GOV-07 — Hold individuals accountable for control responsibilities
- UC-GOV-07 — Hold individuals accountable for control responsibilities mitigates Missing security terms in contracts and no disciplinary process
- strength
- primary
- rationale
- Documented rules of behavior and disciplinary consequences for violations supply the deterrent and disciplinary process the risk lacks.
- UC-GOV-07 — Hold individuals accountable for control responsibilities mitigates Weak internal control environment enabling fraud and error
- strength
- primary
- rationale
- Holding individuals accountable for control responsibilities (COSO P5) directly strengthens the control environment.
- UC-GOV-07 — Hold individuals accountable for control responsibilities maps_to CC1.5 — The entity holds individuals accountable for their internal control responsibilities in the pursuit of objectives.
- framework
- soc2
- control_id
- CC1.5
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- 2017 TSC
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- Control Library Lifecycle oversees UC-GOV-07 — Hold individuals accountable for control responsibilities
- SOC 2 Trust Services Readiness tests UC-GOV-07 — Hold individuals accountable for control responsibilities
- UC-GOV-07 — Hold individuals accountable for control responsibilities mitigates Internal fraud — asset misappropriation, embezzlement, forgery
- strength
- related
- rationale
- Accountability, performance incentives, and disciplinary consequences deter insider misappropriation.
- ISO 27001 SoA Review & Controls Assessment oversees UC-GOV-07 — Hold individuals accountable for control responsibilities