Pre-Vulnerability scan workflow and Approval workflow
Users can raise request/ticket for server movement, new server commissioning, production movement etc.,
This will trigger Nexpose scan on the target IP by TVM coordinator
Once the vulnerability scan results are out and no issues are triggered, the...
Report to display the testing status of Harmonized controls
As part of UCF integration we are able to present the Harmonized controls available among different regulations in a report. But we don't have a report which shows the testing status of these harmonized controls.
Use case:
We have many controls ...
When Scanning the key should be configurable from IP address to Hostname
When assets are pulled in from CMDB Service Now IP address information is not held. Therefore the scanner will pick up many IP addresses where the Asset is available but no IP information is entered. The ask is to include in M7 the ability to conf...
Risk Register Visibility Rules should follow GRCf activities for viability of Risk Assessment reports
Risk Register Report Visibility Issue - - Cleanest option recommended by MetricStream product team.
Trackr rasied : 289326
Risk Assessments will only appear when the appropriate activities are added to the user role. The logic will apply here:...
Guest
over 7 years ago
in IT and Cyber Risk
1
Cannot be considered in the Roadmap
Basic request form and report to Request or Certify a new IT Service
While we measure asset performance and IT Risk... we miss the common problem of evaluating the risk of a PROPOSED system, tracking the status (proposed, approved, sunsetting, etc) and supporting the SDLC lifecycle.
Guest
over 7 years ago
in IT and Cyber Risk
1
Cannot be considered in the Roadmap
Need ability to copy IT Compliance Test Plan with an option to change meta data of plan including details, testing scope, dates, attachments etc. before publishing the plan
Test Execution Form -> Findings Tab- include related sub Items to show 'By Testing Related' Object
Findings tab needs to include 'Related Sub Items' in addition to 'Related Items' so as to enable the user to know exactly which related object failed while testing. Say if you are testing Assets by testing its related controls, you should be able ...