The Assured Profile defines a TSMM implementation with explicit evidence, assessment, and stronger governance traceability.
| Requirement | Description |
|---|---|
| Operational Profile baseline | All Operational Profile requirements |
| Evidence package | Evidence linked to requirements, controls, or claims |
| Structured assessment | Assessment activity with method and result |
| Verification traceability | Inputs and outcomes linked to decisions |
| Explicit control-threat mapping | Controls mapped to threat classes or failure modes |
| Review or escalation path | Human review, remediation, or exception process |
An Assured Profile implementation is designed for ecosystems that need evidence-backed confidence rather than decorative certainty.