Provides a disciplined and structured approach for documenting the findings of the assessor and the recommendations for correcting any identified vulnerabilities in the security controls.
Source(s):
CNSSI 4009-2015
DoDI 8510.01