Skip to Main Content
Cyber GRC Ideas Portal
ADD A NEW IDEA

IT and Cyber Risk

Showing 47 of 141

Threat Type value should be a multiselect in the Threat form.

Threat Type value should be a multiselect in the Threat form. A single threat like fire can be having multiple types such as Accidental, Deliberate or Environmental. But currently it is a single select field and should be made multi-select. Curren...
Guest over 4 years ago in IT and Cyber Risk 3 Pending Roadmap Inclusion

Vector value should be a multiselect in the Threat form.

Vector value should be a multiselect in the Threat form. There can be scenarios where a single threat can be realized through multiple vectors e.g. Hacking attack and loss of data can be done through multiple vectors. Hence, this field should be a...
Guest over 4 years ago in IT and Cyber Risk 0 Pending Roadmap Inclusion

Support for FAIR risk assessment methodology.

FAIR is a popular framework for IT risk assessments.
Deleted User almost 9 years ago in IT and Cyber Risk 0 Release Candidate Available

Risk Register Visibility Rules should follow GRCf activities for viability of Risk Assessment reports

Risk Register Report Visibility Issue - - Cleanest option recommended by MetricStream product team. Trackr rasied : 289326 Risk Assessments will only appear when the appropriate activities are added to the user role. The logic will apply here:...
Guest over 7 years ago in IT and Cyber Risk 1 Cannot be considered in the Roadmap

Basic request form and report to Request or Certify a new IT Service

While we measure asset performance and IT Risk... we miss the common problem of evaluating the risk of a PROPOSED system, tracking the status (proposed, approved, sunsetting, etc) and supporting the SDLC lifecycle.
Guest almost 8 years ago in IT and Cyber Risk 1 Cannot be considered in the Roadmap

Risk Posture Reports - dynamic adaptability to configuration

Currently risk posture reports break down when the risk levels are changed from a scale of 3 to a scale of 5. Risk acale configuration is a standard level of configuration we offer within the product. As a result any report taking in this informat...
Guest over 8 years ago in IT and Cyber Risk 2 Cannot be considered in the Roadmap

Support for ISF IRAM risk assessment methodology.

ISF IRAM is a framework for IT risk assessments.
Deleted User almost 9 years ago in IT and Cyber Risk 0 Cannot be considered in the Roadmap