Walk-Through
What is Walk-Through?
An audit procedure in which the auditor traces a single transaction from initiation through final recording to verify that controls are in place and operating as described. Walk-throughs are used to understand and document business processes.
Terms that appear alongside walk-through
Each of these is named in at least one of the same controls as walk-through. The number is how many controls name both.
- ransomware 2 shared controls
- threat landscape 2 shared controls
- purple team 2 shared controls
- red team 2 shared controls
- lessons learned 2 shared controls
- blue team 2 shared controls
Frameworks that govern walk-through
What the standards actually require on walk-through
Requirements naming walk-through across 5 standards, quoted from the control text.
A replay/purple-teaming workshop is held where the red and blue teams walk through the attack scenarios together to maximise learning.
TIBER-3.3 · Replay and purple teaming workshop →HKMA C-RAF iCAST (Intelligence-led Cyber Attack Simulation Testing) - mandatory for HIGH inherent risk AIs + optional for medium tier + modeled on UK CBEST + ECB TIBER-EU (verified separately in this corpus) + intelligence-led red team testing methodology.
HKMA-CRAF-iCAST-RedTeam-PurpleTeam-IntelLed · HKMA C-RAF iCAST (Intelligence-Led Cyber Attack Simulation Testing) for HIGH Inherent Risk AIs →Chapter 4 establishes passenger + baggage screening requirements. 4.3 Measures Relating to Passengers + Cabin Baggage - each State shall establish measures to ensure originating passengers of international flights + their cabin baggage are screened + prevented...
ICAO-ANX17-Chap4-PassengerScreening-CabinBaggage-HoldBaggage-100Percent-EDS · ICAO Annex 17 Chapter 4 - Passenger Screening + Cabin Baggage + Hold Baggage 100 Percent + Explosive Detection Systems (EDS) →Requirements for verification methods including reviews, inspections, walk-throughs, and testing.
ISO-26262-8-9 · Verification →Cybersecurity exercises + drills are mandated per FSA Cybersecurity Guidelines for Tier 2/3 institutions + coordinated industry-wide via Delta Wall + FISC. (1) Institutional Tabletop Exercises: (a) Annual minimum per FSA expectation;
JP-FSA-CYB-Cybersecurity-Exercises-Drills-Annual-Tabletop-Industry-Wide-Exercise-Delta-Wall-FSA-Coordinated-Sector · Japan FSA Cybersecurity Exercises + Drills + Annual Tabletop + Industry-Wide Exercise + Delta Wall + FSA Coordinated Sector-Wide + FISC Drills + Cross-Sector Crisis Coordination + International Exercises + Cyber Range →Questions people ask about walk-through
What is Walk-Through?
Why is Walk-Through important for compliance?
Which compliance frameworks address Walk-Through?
Where can I learn more about Walk-Through?
See how Walk-Through applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.