This objective ensures your organization has formally documented and is actively using a risk assessment process to evaluate potential threats to Controlled Unclassified Information (CUI). Assessors will expect to see a defined, repeatable process in writing—and evidence that it’s been followed.

🍪 We Use Cookies

To enhance your experience and analyze site usage, we use cookies. By continuing to use our site, you agree to our use of cookies in accordance with our Privacy Policy.