ctl-047
External APIs enforce OAuth token validation and rate limiting.
- Type
- PREVENTIVE
- Automation
- AUTOMATED
- Frequency
- CONTINUOUS
- Owner
- Digital Channels
Control Design Assessment (CDA)
Procedures evaluating whether the control is designed adequately.
No design-assessment procedures defined yet.
Control Operating Effectiveness (COE)
Procedures evaluating whether the control operated over the testing period.
No operating-effectiveness procedures defined yet.
Linked risks
- API security weaknessmitigation 3
Framework mappings & latest test
AIS-10IAM-16
Latest test:PASS2026-03-10