Create a control indicator using the Compliance Workspace
Indicator data for controls, risk, and audit evidence are measured differently depending on the GRC application.
Before you begin
Role required: sn_compliance_admin, sn_compliance_manager
Procedure
Navigate to one of the following locations:
- All > Policy and Compliance > Compliance Workspace > Control monitoring > All indicators.
- Risk > Control monitoring > All indicators.
- Audit > Control monitoring > All indicators.
- Click New.
On the form, fill in the fields.
| Field | Description |
|---|---|
| Category | The type of indicator being created. Select Compliance Indicator for a control indicator and Risk Indicator for a risk indicator. |
| Inherit from template | Use a selected template to fill in the form. |
| Template | If you selected the Inherit from template check box, select the template you want to use to fill in the form. After you have selected a template, the rest of the fields in the Create New Indicator screen are pre-filled and set to Read-only. For more information, see Create a GRC indicator template using the Compliance Workspace. |
| Override template | If you selected the Inherit from template check box, and you want to customize your entries in the form, select this check box. You can then edit some or all of the fields on the form. |
| Name | Name of the indicator. |
| Description | A description of this indicator. |
| Entity | Entity associated with this indicator. |
| Control | Control associated with this indicator. |
| Owning group | Group that owns the indicator. |
| Owner | Indicator owner. |
| Method | |
| Type | Results can be gathered manually using task assignment or automatically using basic filter conditions, Performance Analytics, or a script.- Manual - Basic - Script |
| Applies to | Entity related to the Item. |
| Last result passed | Option that indicates whether last result passed. |
| Short Description | If Type is Manual, this field is present. Brief description of the issue. |
| Instructions | If Type is Manual, this field is present. Instructions for the collection of indicator results. |
| Value Mandatory | If Type is Manual, this field is present. |
| Passed/Failed | If Type is Basic, this field is present. Indicator passes or fails. |
| PA Threshold | If Type is PA Indicator, this field is present. The associated PA Threshold. |
| Script | If Type is Script, this field is present. Script that obtains the desired system information. |
| Schedule | |
| Collection frequency | Collection frequency for indicator results. Indicator tasks and results are generated automatically based on the indicator schedule. |
| Next run date | Next collection time for indicator results. |
| Supporting Data | |
| Note: Starting with Version 10.1, the actual historical data for the supporting data records from the indicator results or indicator tasks is displayed. Earlier, only the real-time state of the records collected could be viewed. | |
| Table | Use supporting data to gather supporting evidence from other applications. |
| Supporting data fields | Supporting data fields based on the selected table. |
- Click Submit.
What to do next
If you are implementing the Policy and Compliance Management software, you have completed the mandatory setup steps. Return to the Policy and Compliance Management setup checklist and proceed to the optional steps, as needed.