Control Framework

Framework Architecture

The Continuum/AI control framework organizes 48 controls across 10 domains. Each control defines observable criteria that can be verified through evidence collection.

Design principles

Five principles guide the framework architecture.

Specificity requires that controls address risks unique to agentic systems rather than restating general security requirements. The framework does not duplicate controls available in ISO 27001 or SOC 2.

Auditability requires that each control defines observable criteria. An assessor can verify compliance through evidence collection without relying on subjective judgment.

Composability enables controls to be selected and combined based on deployment scope and risk profile. The certification model defines which controls apply at each profile level.

Operational focus directs attention to runtime behavior rather than development practices or model characteristics.

Defense in depth ensures multiple controls address each threat category. A single control failure does not expose the organization to unmitigated risk.

Domain structure

CodeDomainControlsPurpose
GOVGovernance5Policy, ownership, oversight
IDNIdentity4Agent and server authentication
AZNAuthorization5Permission management
DATData Protection6Classification and leak prevention
VALInput Validation5Injection prevention
EXEExecution Security5Isolation and containment
OBSObservability6Logging and detection
INTIntervention4Human oversight mechanisms
RESResilience4Incident response and recovery
SUPSupply Chain4Dependency management

Control specification format

Each control specifies six attributes: identifier (domain code and sequence number), title (concise description), requirement (normative statement), rationale (threat addressed), evidence (artifacts for compliance), and profile (minimum certification level).

Previous
Scope and applicability