Independent review and examination of a system’s records and activities to determine the adequacy of system controls, ensure compliance with established security policy and procedures, detect breaches in security services, and recommend any changes that are indicated for countermeasures.
Source(s):
NIST SP 800-82 Rev. 2
from
ISO/IEC 7498