Skip to Main Content
Cyber GRC Ideas Portal
ADD A NEW IDEA

All ideas

Showing 34

CMDB Connector- Provide Configuration option to remap the data consumption process

Product should have configuration option to address remap the different set of data to asset Library. Currently CMDB Service data get ingested as Process in Metricstream. CMDB service table stores all high level service information which is high l...
Guest almost 3 years ago in IT and Cyber Risk 0 Pending Roadmap Inclusion

Few suggestions to enhance the IT Risk Assessment form and the workflow.

When multiple rows are added in the scope selection section of the Risk Assessment form and a questionnaire is selected, system sends the questionnaire to the entire list of scoped items as just one assessment. Expected - In the 'Perform IT Risk A...
Guest about 3 years ago in IT and Cyber Risk 0 Pending Roadmap Inclusion

Ability to add multiple controls at once at Control Effectivness section in the Risk Assessment form

As of today, application allows to select multiple controls in the control effectivness section inside risk assessment form but not able to submit with multiple controls. This is a common scenario to have multiple controls for a risk that is getti...
Guest about 3 years ago in IT and Cyber Risk 0 Pending Roadmap Inclusion

assets that are linked to critical processes or to critical business objectives should automatically have a high business criticality

this would allow users to have a top-down approach to managing the business criticality of assets.
Guest about 7 years ago in Threat & Vulnerability Management 1 Pending Roadmap Inclusion

Integration with Cherwell - Player in Mid Market segment competing with Service Now

Hi Team, We came across Cherwell ITSM, which is being acquired by Ivanti. Please review the press release here with more information and Ivanti is a well-known vendor in the market. A cost-effective alternative of ServiceNow and very well received...
Guest almost 4 years ago in IT and Cyber Risk 3 Pending Roadmap Inclusion

Threat Type value should be a multiselect in the Threat form.

Threat Type value should be a multiselect in the Threat form. A single threat like fire can be having multiple types such as Accidental, Deliberate or Environmental. But currently it is a single select field and should be made multi-select. Curren...
Guest about 4 years ago in IT and Cyber Risk 3 Pending Roadmap Inclusion

Vector value should be a multiselect in the Threat form.

Vector value should be a multiselect in the Threat form. There can be scenarios where a single threat can be realized through multiple vectors e.g. Hacking attack and loss of data can be done through multiple vectors. Hence, this field should be a...
Guest about 4 years ago in IT and Cyber Risk 0 Pending Roadmap Inclusion

Triggering single issue for tracking same vulnerabilities across different assets.

we need the feature to create single issue for tracking same vulnerabilities. For example if the identified vulnerability affects more than one asset (Server), we need the ability to create single issue to track the patching remediation for all th...
Guest about 8 years ago in Threat & Vulnerability Management 1 Pending Roadmap Inclusion

Configurable connectors

SABB has no asset/CMDB like Atrium. They want the Nexpose connector to create Asset/Asset-Class GRC library from the vulnerability information itself. Creating asset from Nexpose feed through ETL and business criticality to be governed by fields ...
Guest over 6 years ago in Threat & Vulnerability Management 0 Pending Roadmap Inclusion

Data feed from external scanning vendors should be up-loadable and tracked in MSI platform using ISM

SABB employs the services of 2 external vendors to scan the internet facing IP addresses to check for any vulnerabilities. These results (2 different excel formats) should be up-loadable into the system. The external IP can in fact refer to the sa...
Guest over 6 years ago in Threat & Vulnerability Management 0 Pending Roadmap Inclusion