Perform gap analysis
Perform a Gap analysis of cybersecurity activities.
Before you begin
Policy and Compliance Management Role required: admin
NIST CSF sn_irm_nist_csf.risk_executive or sn_irm_nist_csf.security_officer
About this task
Note:
The Gap analysis process should not take more than a minute. A weekly job that
runs the gap analysis for users so the metrics are up-to-date.
Procedure
- Navigate to .
- Search for the target using the Name or Profile fields.
- Open the target record.
- Click the Activities related list and select the activity.
- Review the activity and click Gap Analysis to initiate the Gap analysis.
- To view control objectives for the cybersecurity policy that do not have any controls in-place for the target's profile, click the Gaps related list.
- To view issues with cybersecurity controls that are non-compliant because of implementation issues, click the Non-compliant controls related list.
- To view Failed indicators of controls and risks for the target's profile, click the Failed Indicators related list.
- To view risks associated with controls for the target's profile, click the Risks related list.
- To view issues related to the controls and risks for the target's profile, click the Issues related list.
- To view action plans for the target's profile, click the Action Plans related list.
- Click Save.