The CreatorCon Call for Content is officially open! Get started here.

GRC forum
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Forum Posts

Attestation Frequency

I have a few controls, where the attestation frequency is set to 'none', but after the attestation recipient completes the form, the nightly scheduled process sets it back to Attest. (Activity journal shows Administrator, System - State  Attest was R...

GRC Control Attestation Delegation

Hello Experts, Has anyone came up with a solution to delegate an attestation to another person, when he/she is not available? I have checked with ServiceNow, and they confirm, they dont have that option out of box.  So I wanted to check, if anyone ha...

SanjivMeher by Mega Patron
  • 1670 Views
  • 14 replies
  • 15 helpfuls

SOC 1 Type II Report

To whom it may concern, Could you please let me know where can I find the latest SOC1 Type II report? Thank you in advance. Kind regards,Sandor Molnar

SMOLnar by Kilo Explorer
  • 1933 Views
  • 1 replies
  • 0 helpfuls

Resolved! Policy Acknowledgement

I am looking for a way to have employees "Acknowledge" a policy in GRC. I was thinking of simply using the "Useful" UI Macro but due I was informed that the verbiage had to state "I have read and acknowledged this policy" then the Yes / No buttons co...

Tommy Morris by Kilo Contributor
  • 3955 Views
  • 7 replies
  • 5 helpfuls

Data Models

How do I request the data models for Integrated Risk Management / GRC 

theoracle by Kilo Expert
  • 2442 Views
  • 7 replies
  • 11 helpfuls

Resolved! Tutorial: How to implement Policy & Compliance and Risk Management

Following the pre-implementation episode, in this 6 minutes tutorial, Shauna and Donna are back to present a step-by-step guide to get you and your team up and running with Policy & Compliance and Risk. This is a must watch to reduce your "time to va...

find_real_file.png find_real_file.png
Eric Feron by Moderator
  • 5532 Views
  • 4 replies
  • 6 helpfuls

GRC Import

I noticed a feature to import stuff from UCF; is there a way to import other data or is there predefined controls based off of the authority (NIST 800-53) since UCF database is not maintained and not cross walked to industry standards. Also, is there...

cbryant by Mega Contributor
  • 2308 Views
  • 10 replies
  • 11 helpfuls

INDICATORS, CONTROL & RISK OWNER ( ENTITY OWNER )

Hi Can someone please give me a better understanding of indicators, Probably a layman's explanation  Are control and risk owner mandatory, are they the ones to oversee the attestation and assessment  can the control owner and risk owner be the same a...

Damon12 by Kilo Contributor
  • 3061 Views
  • 7 replies
  • 16 helpfuls

Resolved! GRC Implementation

Hi All, I am a newbie to the GRC and planning to implement it. Can you please tell me what all things I need to consider for the implementation and share any implementation document with me. Basically, I am looking for a technical implementation docu...

Resolved! CCM Use Cases

Hello Everyone, I am looking for top 10 use cases for continuous controls monitoring (CCM) using SNOW GRC both IT and Non IT

Shabbir by Kilo Explorer
  • 1766 Views
  • 2 replies
  • 7 helpfuls

Resolved! If a control objective has a child objective and you put an indicator on the child, will the compliance roll up to the parent?

I have a control objectives that are related to my policy that create a four layer deep relationship with other control objectives (using the parent-child) relationship.  If I check the compliance of the deepest level (Child objective level 4), does ...