Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Table of Contents

Benefits

...

Info
titleNOTE

This section describes actions conducted on the Audit summary page, which opens from the Audits visual display page.

To view and evaluate a control assessment on the Audit summary page, complete the following steps:

  1. On the Audits visual display page, select the audit from the dropdown.
  2. Click the Assessments tab. 
  3. Find the control assessment and click the link in the Title column.



  4. A dialog box displays with several steps for verifying or declining the control assessment.



  5. If the page opens in the Details tab, click the Attachments sub tab to review evidence and complete one of the following actions.

Accessing Assessments from the To-Do List

...

  1. If the Attachments area is not already displaying, select that sub tab.



  2. Review evidence on the Attachments sub tab.
  3. Click the Comments sub tab to review any additional information.
  4. To add a reason behind declining or verifying the assessment, enter a comment in the Comments text box and click Send to post. This only the comment but does not impact the status of the assessment.



  5. After review, there are two selections in the upper, left corner:
    • Conclusion: Design – Control language is appropriate and it satisfies the objective. Select one of the following:
      1. --- - No rating. The control has not been rated. The page defaults to this.
      2. Effective - The control's design works as intended.
      3. Ineffective - The control's design does not work as intended.
      4. N/A - Rating the design is not applicable or can't be done.
    • Conclusion: Operational - Control is working effectively. If ineffective, create issue and report finding that you can work on. Select one of the following:
      1. --- - No rating. The control has not been rated. The page defaults to this.
      2. Effective - The control is operating as intended.
      3. Ineffective - The control is not operating as intended.
      4. N/A - Rating the operational effectiveness is not applicable.


    Click


  6. To complete the step, do one of the following:
    1. For an assessor, click Complete Assessment. This is the selection even if the conclusion for the design and/or operation is deemed ineffective. This sets the status to Submitted if there is a verifier or Completed if there is no verifier.

      Image Added

    2. For a verifier, click Verify Assessment. This is the selection even if the conclusion for the design and/or operation is deemed ineffective. This sets the status to Completed and shows that the control either is or is not effective.
     Alternatively
    1.  Alternatively, click Decline Assessment to set the status back to Open. This notes that the information is incomplete and sends it back to the
    assignee to provide additional evidence
    1. assessor. It does not close or complete the assessment.
    Image Removed

    1. Image Added

Include Page
DI:Include - More and Less
DI:Include - More and Less

...