Manage control indicators
Continuous monitoring involves activities related to identifying and creating key risk and controls indicators. The Compliance Overview is available to compliance administrators and compliance managers, providing an executive view into compliance requirements, overall compliance, and compliance breakdowns.
- Indicators
- Indicators collect data to monitor controls and risks, and collect audit evidence. Indicators monitor a single control or risk.
- Indicator templates
- Indicator templates allow the creation of multiple indicators for similar controls or risks.
- Indicator
- Indicator task
- Indicator result
Compliance Overview
| Name | Visual | Description |
|---|---|---|
| Compliance Requirements | Donut chart | Select a wedge to focus on a specific compliance area. |
| Overall Compliance | Donut chart | Displays the overall compliance of all the control requirements in the system. Selecting a specific wedge in the previous widget brings that area into focus. |
| Entity | Drop down list | Select one or more entities to view and compare their compliance across multiple items. |
| Control State | Check list | Select or clear check boxes to view filter reports by control state. |
| Compliance by Authority Document | Bar Chart | Compare level of compliance depending on the selected entity and/or authority document. |
| Compliance breakdown | Multi-level Pivot | View a breakdown of control compliance by related authority documents and policies. |
| Non Compliant Entities | Column Chart | Count of non-compliant control requirements grouped by entity. |
Authority Documents
Authority documents define policies, risks, controls, audits, and other processes to ensure adherence to the authoritative content. Each authority document is defined in a record and the related lists on that record contain the individual conditions of the authority document.
Citations
Citations contain the provisions of the authority document, which can be interrelated. Citations break down an authority document into manageable themes.
Create a control indicator
Indicator data for controls, risk, and audit evidence are measured differently depending on the GRC application.
Before you begin
Role required: sn_compliance_admin, sn_compliance_manager
Procedure
What to do next
If you’re implementing the Policy and Compliance Management software, then you've completed the required setup steps. Return to the Policy and Compliance Management setup checklist and proceed to the optional steps, as needed.
Create a GRC indicator template
Compliance or risk managers create indicator templates from which many indicators can be created.
Before you begin
- sn_compliance.admin or sn_compliance.manager
- sn_risk.admin or sn_risk.manager
- sn_audit.admin or sn_audit.manager
- sn_grc.user