Skip to end of metadata
Go to start of metadata

You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 14 Next »

Benefits


Running audits without ZenGRC requires a lot of work. ZenGRC addresses the hardships and enables a compliance team to effiiciently manage and report results for an audit.

Setting up audits in ZenGRC fulfills three main functions:

  1. Visibility into audit progress: How close is the team to completing audit-related assignments?

  2. Clarity on audit issues: What's broken? How can it be fixed, and what's the status?
  3. Exposure of compliance posture: How effective are my controls?

Overview


The Audits module allows for the following activities:

  1. Evidence collection - Managing a Document Request List (DRL) is an extensive project management endeavor. ZenGRC allows you to import a DRL from your auditor, so you can collect, verify/decline evidence, and escalate the request if no action is taken.
  2. Testing and concluding on controls - Once evidence is submitted, it's straightforward to determine whether your controls are operating effectively.
  3. Issue management - Internal and external auditors often discover gaps, findings, and issues. ZenGRC allows you to set up workflows so you can remediate them and keep track of the process.



TIP

For additional information regarding audit structure and process flow, see ZenGRC Diagrams.





  • No labels