The CreatorCon Call for Content is officially open! Get started here.

GRC forum
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Forum Posts

Resolved! From where can we download the Vendor Risk SIG Questionnaire ?

Hi,   In New york release notes it states "Your vendor contact can upload a prefilled SIG spreadsheet or take a form-based questionnaire which gets imported to the instance. " Before NY release there was a link to download them now that there is no l...

priyajames1 by Tera Expert
  • 5029 Views
  • 11 replies
  • 4 helpfuls

Resolved! How to Import Risk Assessment in Risk Assessment Designer?

Hi Team, Is there any way to export an excel template for Risk Assessment Designer to be used for creating set of questions? Is there any way to Import a set of questions (an excel file) to Risk Assessment Designer? Your help will be much appreciated...

Jehiellb by Giga Contributor
  • 2040 Views
  • 11 replies
  • 7 helpfuls

Resolved! POLICY & COMPLIANCE QUESTION

Are policy written from citations? Are authority document a framework can an organization have more than one framework/authority documents How is control objective related or connected with control? Please, I need a layman's explanation once UCF is a...

Damon12 by Kilo Contributor
  • 2223 Views
  • 7 replies
  • 8 helpfuls

Resolved! Is it possible to set an "ALLOW-FROM" for iframe

Hi,We have an edge encryption proxy which work on another port than the 443 due to security constraint.This configuration generate white screens because some redirection in iframe are not the same "domain:port".The  glide.set_x_frame_options properti...

Resolved! GRC indicator nightly run

If I have a manual indicator frequency set (say 1st of each month), is it the 'GRC indicator nightly run' that creates the new indicator tasks when the date is correct? In our system, this job is currently not active. 

Resolved! Control Attestation Notification Not Triggering

We've been trying to get the GRC Attestation OOTB assessment notification firing when the control state changes to Attest.  We have tried various workarounds including changing the Notify Assessment User BR to include "Attestation" and changing the O...

Thomas_J_C by Mega Expert
  • 1519 Views
  • 5 replies
  • 1 helpfuls

Resolved! On which table the vendor's assessment responses get stored?

I have an issue with vendor risk assessment process. One of the vendor using the vendor portal has partially completed the vendor risk assessment. Now due to some problems he is unable to access the assessment record. The vendor has not hit the Submi...

Resolved! Unable to Create Controls Automatically

Hello Group,Sorry if this has been answered already, but I couldn't find a related post. I am using my developer's instance to create a test audit environment for my company as a use case. I did the following step:I loaded the appropriately GRC plugi...

find_real_file.png
drewsmithii by Kilo Contributor
  • 1830 Views
  • 3 replies
  • 1 helpfuls

Resolved! Policy Expire/Renew and Attestations

Can someone explain what happens after a policy expires? Do you need to create a new Policy or can you update the expiration date? What happens to the Controls that have attestations? Do they all get reset? We have a policy that states that Service C...

Gene Manuel3 by Giga Contributor
  • 2682 Views
  • 7 replies
  • 13 helpfuls

(Need feedback) What is the best way to study for the CIS-RC (Certified Implementation Specialist - Risk, Commpliance and Audit) Exam?

I teach the GRC courses and I get this question a lot and some of the answers are the same for all the exams. The common answers are: Review the exam blueprint  (How to get to this is at the end of this article)READ the book - both the slides and the...

find_real_file.png
Jan Spurlin by ServiceNow Employee
  • 1395 Views
  • 2 replies
  • 5 helpfuls