Framework links explain how policy work relates to one or more reference requirements. A policy, category or subcategory link provides organisational traceability; control links provide the mapping used for framework control coverage.
Inspect existing relationships
Select the policy element and expand Framework links. Read the framework and requirement identity and use Open in Frameworks to inspect the source. Review the policy and framework version context before relying on the relationship.
A Covered or Partial indicator describes the recorded relationship status. It is not a substitute for reading the control, evidence and applicability rationale.
Add a mapping
- Ensure the intended framework is Available in policies.
- Open the intended editable policy version and select the element.
- Choose Link to framework elements.
- Navigate the framework tree and select the relevant requirements.
- Review the selection and choose Link elements.
- Confirm that the resulting links identify the intended sources.
The current picker combines the framework hierarchy in one tree. It carries the framework version with the relationship and prevents selecting the same existing relationship twice. Available candidates depend on source availability, policy state and permissions.
Maintain the mapping
Review incoming changes under Framework updates. A source change is a reason to inspect the relationship and affected wording; it does not automatically update every mapped control.
Removing a link is a separate confirmed action. Its removal scope can include the relationship across policy versions, so read the confirmation before proceeding. Removing the relationship does not delete the framework requirement or the policy control itself.
Use multiple mappings only where the control actually supports the different requirements. Preserve the source-specific interpretation and evidence needed by each assessment.