Skip to content

Class: AuditFinding

A finding from an internal audit, including nonconformities, observations, and positive findings.

URI: iso27001:AuditFinding

 classDiagram
    class AuditFinding
    click AuditFinding href "../AuditFinding/"
      NamedEntity <|-- AuditFinding
        click NamedEntity href "../NamedEntity/"

      AuditFinding : auditee_response

      AuditFinding : clause_reference

      AuditFinding : closure_date

      AuditFinding : closure_status

      AuditFinding : control_reference





        AuditFinding --> "0..1" SecurityControl : control_reference
        click SecurityControl href "../SecurityControl/"



      AuditFinding : created_date

      AuditFinding : description

      AuditFinding : finding_description

      AuditFinding : finding_type





        AuditFinding --> "0..1" AuditFindingType : finding_type
        click AuditFindingType href "../AuditFindingType/"



      AuditFinding : id

      AuditFinding : linked_corrective_action





        AuditFinding --> "0..1" CorrectiveAction : linked_corrective_action
        click CorrectiveAction href "../CorrectiveAction/"



      AuditFinding : modified_date

      AuditFinding : name

      AuditFinding : objective_evidence

      AuditFinding : recommended_action

      AuditFinding : risk_implication

      AuditFinding : root_cause_analysis

      AuditFinding : version

Inheritance

Slots

Name Cardinality and Range Description Inheritance
finding_type 0..1
AuditFindingType
Type of audit finding direct
clause_reference 0..1
String
Reference to standard clause direct
control_reference 0..1
SecurityControl
Reference to the control (e direct
finding_description 0..1
String
Description of the finding direct
objective_evidence 0..1
String
Evidence supporting the finding direct
root_cause_analysis 0..1
String
Analysis of root cause direct
risk_implication 0..1
String
Risk implications of the finding direct
recommended_action 0..1
String
Recommended action to address finding direct
auditee_response 0..1
String
Response from the auditee direct
linked_corrective_action 0..1
CorrectiveAction
Corrective action linked to this finding direct
closure_status 0..1
String
Status of finding closure direct
closure_date 0..1
Date
Date the finding was closed direct
id 1
Uriorcurie
Unique identifier for this entity instance NamedEntity
name 1
String
Human-readable name or title NamedEntity
description 0..1
String
Detailed description of the entity NamedEntity
created_date 0..1
Date
Date when the entity was created NamedEntity
modified_date 0..1
Date
Date when the entity was last modified NamedEntity
version 0..1
String
Version identifier for the entity NamedEntity

Usages

used by used in type used
InternalAudit findings range AuditFinding

In Subsets

Identifier and Mapping Information

Annotations

property value
iso27001_clause 9.2

Schema Source

  • from schema: https://w3id.org/lmodel/iso27001

Mappings

Mapping Type Mapped Value
self iso27001:AuditFinding
native iso27001:AuditFinding

LinkML Source

Direct

name: AuditFinding
annotations:
  iso27001_clause:
    tag: iso27001_clause
    value: '9.2'
description: A finding from an internal audit, including nonconformities, observations,
  and positive findings.
in_subset:
- performance_evaluation
from_schema: https://w3id.org/lmodel/iso27001
is_a: NamedEntity
slots:
- finding_type
- clause_reference
- control_reference
- finding_description
- objective_evidence
- root_cause_analysis
- risk_implication
- recommended_action
- auditee_response
- linked_corrective_action
- closure_status
- closure_date

Induced

name: AuditFinding
annotations:
  iso27001_clause:
    tag: iso27001_clause
    value: '9.2'
description: A finding from an internal audit, including nonconformities, observations,
  and positive findings.
in_subset:
- performance_evaluation
from_schema: https://w3id.org/lmodel/iso27001
is_a: NamedEntity
attributes:
  finding_type:
    name: finding_type
    description: Type of audit finding.
    from_schema: https://w3id.org/lmodel/iso27001
    rank: 1000
    alias: finding_type
    owner: AuditFinding
    domain_of:
    - AuditFinding
    range: AuditFindingType
  clause_reference:
    name: clause_reference
    description: Reference to standard clause.
    from_schema: https://w3id.org/lmodel/iso27001
    rank: 1000
    alias: clause_reference
    owner: AuditFinding
    domain_of:
    - AuditFinding
    range: string
  control_reference:
    name: control_reference
    description: Reference to the control (e.g., A.5.1).
    from_schema: https://w3id.org/lmodel/iso27001
    rank: 1000
    alias: control_reference
    owner: AuditFinding
    domain_of:
    - SoAEntry
    - AuditFinding
    range: SecurityControl
  finding_description:
    name: finding_description
    description: Description of the finding.
    from_schema: https://w3id.org/lmodel/iso27001
    rank: 1000
    alias: finding_description
    owner: AuditFinding
    domain_of:
    - AuditFinding
    range: string
  objective_evidence:
    name: objective_evidence
    description: Evidence supporting the finding.
    from_schema: https://w3id.org/lmodel/iso27001
    rank: 1000
    alias: objective_evidence
    owner: AuditFinding
    domain_of:
    - AuditFinding
    range: string
  root_cause_analysis:
    name: root_cause_analysis
    description: Analysis of root cause.
    from_schema: https://w3id.org/lmodel/iso27001
    rank: 1000
    alias: root_cause_analysis
    owner: AuditFinding
    domain_of:
    - AuditFinding
    range: string
  risk_implication:
    name: risk_implication
    description: Risk implications of the finding.
    from_schema: https://w3id.org/lmodel/iso27001
    rank: 1000
    alias: risk_implication
    owner: AuditFinding
    domain_of:
    - AuditFinding
    range: string
  recommended_action:
    name: recommended_action
    description: Recommended action to address finding.
    from_schema: https://w3id.org/lmodel/iso27001
    rank: 1000
    alias: recommended_action
    owner: AuditFinding
    domain_of:
    - AuditFinding
    range: string
  auditee_response:
    name: auditee_response
    description: Response from the auditee.
    from_schema: https://w3id.org/lmodel/iso27001
    rank: 1000
    alias: auditee_response
    owner: AuditFinding
    domain_of:
    - AuditFinding
    range: string
  linked_corrective_action:
    name: linked_corrective_action
    description: Corrective action linked to this finding.
    from_schema: https://w3id.org/lmodel/iso27001
    rank: 1000
    alias: linked_corrective_action
    owner: AuditFinding
    domain_of:
    - AuditFinding
    range: CorrectiveAction
  closure_status:
    name: closure_status
    description: Status of finding closure.
    from_schema: https://w3id.org/lmodel/iso27001
    rank: 1000
    alias: closure_status
    owner: AuditFinding
    domain_of:
    - AuditFinding
    range: string
  closure_date:
    name: closure_date
    description: Date the finding was closed.
    from_schema: https://w3id.org/lmodel/iso27001
    rank: 1000
    alias: closure_date
    owner: AuditFinding
    domain_of:
    - AuditFinding
    - Nonconformity
    range: date
  id:
    name: id
    description: Unique identifier for this entity instance.
    comments:
    - Should use consistent URI/CURIE format across the dataset
    examples:
    - value: iso27001:risk-001
    - value: iso27001:control-5.1
    from_schema: https://w3id.org/lmodel/iso27001
    rank: 1000
    identifier: true
    alias: id
    owner: AuditFinding
    domain_of:
    - NamedEntity
    range: uriorcurie
    required: true
  name:
    name: name
    description: Human-readable name or title.
    from_schema: https://w3id.org/lmodel/iso27001
    rank: 1000
    alias: name
    owner: AuditFinding
    domain_of:
    - NamedEntity
    range: string
    required: true
  description:
    name: description
    description: Detailed description of the entity.
    comments:
    - Should provide sufficient detail for understanding without external reference
    from_schema: https://w3id.org/lmodel/iso27001
    rank: 1000
    alias: description
    owner: AuditFinding
    domain_of:
    - NamedEntity
    range: string
  created_date:
    name: created_date
    description: Date when the entity was created.
    from_schema: https://w3id.org/lmodel/iso27001
    rank: 1000
    alias: created_date
    owner: AuditFinding
    domain_of:
    - NamedEntity
    range: date
  modified_date:
    name: modified_date
    description: Date when the entity was last modified.
    from_schema: https://w3id.org/lmodel/iso27001
    rank: 1000
    alias: modified_date
    owner: AuditFinding
    domain_of:
    - NamedEntity
    range: date
  version:
    name: version
    description: Version identifier for the entity.
    comments:
    - Supports document control requirements per 7.5.3 e)
    examples:
    - value: '1.0'
    - value: 2.3.1
    from_schema: https://w3id.org/lmodel/iso27001
    rank: 1000
    alias: version
    owner: AuditFinding
    domain_of:
    - NamedEntity
    range: string