Skip to Main Content
Cyber GRC Ideas Portal
ADD A NEW IDEA

IT and Cyber Risk

Showing 42 of 130

A risk register report to display all the risk assessments related to a plan and a capability to export into doc format

Problem Faced by Lazada: Today the available report which displays all the risk assessment details for a plan has limited data( limited to risk assessment status) but does not provide risk rating details that are available in the ootb risk registe...
Guest 8 months ago in IT and Cyber Risk 1 Cannot be considered in the Roadmap

Risk Assessment - Quantitative factors - Option to add multiple levels in a hierarchical factor

Risk Assessment - Quantitative factors - Option to add multiple levels in a hierarchical factor Customer wants to create a Hierarchical factor with 2 sub-levels where second level to identify the maximum value of a set of factors and 1st level is ...
Guest over 1 year ago in IT and Cyber Risk 3 Need more information

INHERENT/RESIDUAL RISKS BREAKDOWN BY CATEGORY - Risk Rating should be in sorted order

Users wants the risk Rating for the Inherent Risks/Residual Risks Breakdown by Category Report to be in logical order like : Report to be: Low, Moderate, High, and Very High. Currently, in the MSU system Sorting is applied in alphabetical order. P...
Guest about 1 year ago in IT and Cyber Risk 0 Pending Roadmap Inclusion

Complying with NIST 800-30 Cybersecurity Framework using IT and cyber risk module.

NIST SP 800-30 NIST Cybersecurity Framework is popular among companies in the US. NIST has become the gold standard for assessing cybersecurity maturity, identifying security gaps, and meeting cybersecurity regulations. Using our IT- risk module w...
Guest almost 3 years ago in IT and Cyber Risk 2 Pending Product Manager's Review

Request a function where if you want to edit the relationship list (add or remove) the pop-up window for the option shows what has already been selected previously.

I would like to request a function where if you want to edit the relationship list (add or remove) the pop-up window for the option shows what has already been selected previously. Currently if you want to edit it, the list does not show which one...
Guest over 1 year ago in IT and Cyber Risk 0 Pending Product Manager's Review

Ability to map Vulnerability Record from QualysGuard to MetricStream Asset Library based on Composite Key not just IPV4 Address

In case Dynamic IP Address scenarios the assets in a customer network are reused and assigned Dynamically. Based on this scanners like QualysGuard when they capture the Vulnerability and later send it to MetricStream via the connector based integr...
Guest over 1 year ago in IT and Cyber Risk 0 Pending Roadmap Inclusion

Risk Assessment Algorithm : There is no option to add a conditional statement in Risk Assessment Algorithm

Risk Assessment Algorithm : There is no option to add a conditional statement in Risk Assessment Algorithm Customer has multiple sub factors to calculate impact and Likelihood, and the formula for Impact and Likelihood has conditional statements t...
Guest over 1 year ago in IT and Cyber Risk 1 Need more information

Ability to reopen the completed assessment or a feature to copy the previous assessment result (including the controls and residual ratings)

Assuming a scenario where a specific assessable entity has 25 risks associated and the risk assessment is completed. After few days, the same assessable entity needs to be reassessed where in the 24 out of 25 risks is unchanged and only one risk h...
Guest about 7 years ago in IT and Cyber Risk 0 Pending Roadmap Inclusion

Interaction between IT Risk and IT Compliance Module

In product's roadmap will there be interactions between IT Risk and IT Compliance Modules. For eg: Failure of a control and the creation of an issue in the IT compliance module does not change the Risk score in the IT Risk module. As this is suppo...
Guest almost 2 years ago in IT and Cyber Risk 0 Pending Product Manager's Review

Make Vector for Threat optional

Very often customers have threat data they want to upload/use, but do not have a threat vector defined for them. Can we make this field optional, or perhaps add values of Other or TBD.
Guest almost 2 years ago in IT and Cyber Risk 0 Pending Product Manager's Review