Governance Risk Compliance
监管差距
Any deficiency or mismatch between current organizational controls, policies, or processes and those required by relevant laws, regulations, or standards.
Quick answer: Any deficiency or mismatch between current organizational controls, policies, or processes and those required by relevant laws, regulations, or standards.
This term page is part of the Protermify Cybersecurity glossary and is published as static HTML for fast indexing and clear language coverage.
Definition
Any deficiency or mismatch between current organizational controls, policies, or processes and those required by relevant laws, regulations, or standards.
Operational example
A regulatory gap analysis helps the compliance team identify missing controls or policy deficiencies relative to new legal requirements.
Localized example
监管差距分析有助于合规团队根据新的法律要求识别缺失的控制措施或政策缺陷。
Definition language
English reference definition
Source
ISO 27001, NIST Cybersecurity Framework, MITRE ATT&CK
Exam relevance
- CISSP
- CompTIA Security+
- CEH
Target audience
- SOC Analysts
- Security Engineers
- Incident Responders