- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-08-2024 08:04 AM
Hello,
I'm currently working on audit management module and some concepts are confusing :
1.What is the use case for creating an auditable unit and what the different with scoping an entity?
2.What is the difference between test template and test plan? which one is created first?
3.How to generate the audit report when the engagement is closed?
4.What is the difference between Track as an observation, Track as a recommendation and track as an issue? What is the functional and technical impact on other module if we choose one or another?
Many thanks
Solved! Go to Solution.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-09-2024 12:01 AM
Hi @jaikellaila
Please check below answer
1.What is the use case for creating an auditable unit and what the different with scoping an entity?
An Organization Creates Auditable units with entities such as business units,departments, vendors,products, Business processes , Business Applications, locations, Authority Documents and Policies to perform RISK ASSESSMENTS.Organization unit create with entities.
2.What is the difference between test template and test plan? which one is created first?
1.Test Template: A Test Template in ServiceNow GRC is a predefined set of test steps or procedures used to assess the effectiveness of a control. The primary purpose of a Test Template is to standardize testing procedures, ensure consistency across various controls, and promote adherence to the desired compliance and regulatory requirements. Test Templates are linked to control objectives to make certain that the testing process aligns with the organization's policies and compliance requirements.
2.Test Plan: In the context of ServiceNow GRC, a Test Plan is a document outlining the strategy, scope, resources, and schedule for testing a specific set of controls. Test Plans are used to organize and manage the testing process, ensuring that the assessment of controls is conducted systematically and efficiently.
First Test template create because we can use that test template at the time of creation test plan.Test template is option field on test plan not mandatory.
3.How to generate the audit report when the engagement is closed?
“Generate Report” button available on engagement form that used to generate report when engagement is closed. Visibility condition of Generate report is - “Role require sn_audit.manager AND State is Closed complete, follow up AND Report template value not empty"
4.What is the difference between Track as an observation, Track as a recommendation and track as an issue? What is the functional and technical impact on other module if we choose one or another?
This is choices of result value. Observation is your audit result. As per your audit result you can select this choice. If any issue you want to create then there are another module use and if any existing issue related with that result then different module are there. It is nothing but result choices of audit operation and you have to give explanation also.
Please check and Mark Helpful and Correct if it really helps you!!!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-09-2024 12:01 AM
Hi @jaikellaila
Please check below answer
1.What is the use case for creating an auditable unit and what the different with scoping an entity?
An Organization Creates Auditable units with entities such as business units,departments, vendors,products, Business processes , Business Applications, locations, Authority Documents and Policies to perform RISK ASSESSMENTS.Organization unit create with entities.
2.What is the difference between test template and test plan? which one is created first?
1.Test Template: A Test Template in ServiceNow GRC is a predefined set of test steps or procedures used to assess the effectiveness of a control. The primary purpose of a Test Template is to standardize testing procedures, ensure consistency across various controls, and promote adherence to the desired compliance and regulatory requirements. Test Templates are linked to control objectives to make certain that the testing process aligns with the organization's policies and compliance requirements.
2.Test Plan: In the context of ServiceNow GRC, a Test Plan is a document outlining the strategy, scope, resources, and schedule for testing a specific set of controls. Test Plans are used to organize and manage the testing process, ensuring that the assessment of controls is conducted systematically and efficiently.
First Test template create because we can use that test template at the time of creation test plan.Test template is option field on test plan not mandatory.
3.How to generate the audit report when the engagement is closed?
“Generate Report” button available on engagement form that used to generate report when engagement is closed. Visibility condition of Generate report is - “Role require sn_audit.manager AND State is Closed complete, follow up AND Report template value not empty"
4.What is the difference between Track as an observation, Track as a recommendation and track as an issue? What is the functional and technical impact on other module if we choose one or another?
This is choices of result value. Observation is your audit result. As per your audit result you can select this choice. If any issue you want to create then there are another module use and if any existing issue related with that result then different module are there. It is nothing but result choices of audit operation and you have to give explanation also.
Please check and Mark Helpful and Correct if it really helps you!!!