None
An organizational official responsible for the development, implementation, assessment, and monitoring of common controls (i.e., security controls inherited by information systems).
See common control provider.
Source(s):
CNSSI 4009-2015
NIST SP 800-37 Rev. 1 - Adapted