This application helps customers using GRC to allow them to configure their own access rules for any GRC table.
It helps Customers/Business stakeholders control who should have access to entities, risks, controls, or other GRC data within their GRC implementation. It improves the turn-around time for the customers significantly.
For Technical stakeholders, it reduces the effort required to maintain and develop access rules for different GRC objects.
• Limit access to IRM/GRC data to authorised people based on
o Entity Structure (downstream)
o People named in records (users, groups)
o Managers (to n levels)
• Based on a set of Before Query Business Rules for each key IRM/GRC tables
Initial Release
ServiceNow GRC: Policy and Compliance, Risk Management