Can anyone provide me the roles and responsibilites of IRM?

KM SN
Tera Expert

Ex.

Entity owner - role need to be given - responsibility
Control owner - role need to have - responsibility  etc.

2 REPLIES 2

Community Alums
Not applicable

Hi @KM SN ,

Here is the list of role which should be given as per Persona:

https://docs.servicenow.com/bundle/washingtondc-governance-risk-compliance/page/product/grc-common/r...

 

Mostly we have seen Entity owner and control owner are same , if not, no worries you can still give the same roles.

Now, a control owner has to take attestations of the control to provide evidence if the control has been applied or not.

so, refer to the above link what all is expected to be done by them, add the roles accordingly.