COBIT AI Controls Mapping: 40 Objectives Against One HTTPS Request
COBIT 2019 spreads 40 governance and management objectives across five domains, and ISACA extended that structure to AI systems in a 2025 white paper without adding a single new objective. A handful of those objectives bite the moment a prompt leaves your network. This maps each one to the technical control that enforces it at the AI request boundary, the enforcement point where it fires, and the evidence artifact it produces for an internal audit review.
Read post →