Manually add a control objective to a question
If you’re using both Policy and Compliance Management and Third-party Risk Management, you can associate control objectives and controls with questions. Controls can be marked as compliant or non-compliant based on the response to the question.
Before you begin
Role required: sn_compliance.manager and sn_vdr_risk_asmt.vendor_risk_manager to associate control objectives in the Vendor Management Workspace.
About this task
Control objectives are authored and managed in Policy and Compliance Management and can be associated with questions used in assessments.
A control objective is an objective, direction, or standard that acts as guidance for company interactions and operations. Control objectives can be categorized, classified, and related to policies.
For more information on creating policies in Policy and Compliance Management, see Create a policy.
To understand the difference between a control objective and a control, see Structural overview of Policy and Compliance Management.