This page defines the Control Domain Model used within AuditFlow OS.
The model provides the high-level structure for organising controls, scoping audits, grouping findings, and reporting assurance outcomes across cyber, AI, data, governance, third-party, and IS4-style reviews.
The Control Domain Model sits above the Control Library. It explains how individual controls are grouped into logical assurance areas.
The purpose of the Control Domain Model is to:
The model helps users group controls intentionally rather than treating each control as an isolated item.
The Control Domain Model is the category structure used to organise the Control Library.
It defines: