GRC Implementation

ServiceNow Adm1
Giga Contributor

Hi All,

I am a newbie to the GRC and planning to implement it. Can you please tell me what all things I need to consider for the implementation and share any implementation document with me.

Basically, I am looking for a technical implementation document or some cheatsheets for implementation so that I don't forget the important steps during implementation and regret later.

Please don't post the docs link, I already know a few things are there.

1 ACCEPTED SOLUTION

Shiva Thomas
Kilo Sage

Namaste Sri,

I would look at this excellent "New York GRC Implementation Checklist" made by ServiceNow. (Word version attached)

find_real_file.png

Source: https://servicenow.highspot.com


Best regards from Switzerland
Shiva :¬,

If this reply assisted you, please consider marking it 👍Helpful or Correct.
This enables other customers to learn from your thread.

View solution in original post

8 REPLIES 8

jing3
Mega Guru

Sri, 

To ensure successful implementation, in your case (other than taking the training classes), I would suggest the following

get a developer instance

install the GRC by  following the steps in DOC

make sure you include the demo data

Play with around with all components of GRC using demo data

ie. authority document

     citation

     policy

     entities

    controls

    policy exceptions

   indicators

....

 

Then you can install some accelerator use case, such as NIST CSF, with Demo data

Play with them. 

You will have a much better understanding of the value of all previous posts. 

 

Scott Ferguson
ServiceNow Employee
ServiceNow Employee

Good replies here, my two cents. 

Once you start configuring in ServiceNow, the most important step (with cascading effects), get your entity types and entities right (or at least close).  You can always recover, but I've seen too many people go too low and generate more controls than they can manage, or too high and not be able to get to the evidence they require.  Spend some time thinking through the right levels.  Start small. Pilot a set, get it right, learn and repeat.  

Eric Feron
Moderator
Moderator

Hello all,

we are in the process of creating a "GRC, live now what?" video tutorial to guide people through the early steps of functioning after deployment.

Stay tuned,

EF

Eric Feron
Moderator
Moderator

And here are two very relevant tutorials:

How to become a "GRC athlete"

GRC Implementation Checklist

Enjoy 🙂