0
22.3.0
Australia Patch 3, Australia, Zurich Patch 7, Zurich, Yokohama Patch 12, Yokohama Patch 6
Standalone Application
GRC Feature roles provide access to individual Integrated Risk Management (IRM) capabilities, instead of granting access to the entire IRM feature set. This approach allows for granular access to specific functionalities, such as Compliance Library, Policy Management, and Control Attestations and Monitoring. It also enables precise control over what is shared with non-IRM products.
Non-IRM users can perform the following actions when assigned appropriate feature roles:
- Library and Control feature set:
-
- Create and manage library objects such as authority documents, citations, and control objectives.
- Associate entity and entity types to control objectives and generate controls.
- Manage control workflows, monitor controls effectively using attestations and indicators, and generate issues.
- Policy feature set:
-
- Create and manage policies and the policy lifecycle.
- Create policy acknowledgements and policy exceptions.
- Audit feature set:
- Create and manage engagements, activities, and scoping entities within those engagements. This role also provides access to a lite version of audit workspace.
- Evidence feature set
- Create and manage evidence requests, collection details, and evidence responses.
New
Query range ACLs include the following enhancements:
- Consistent access control — All tables include standardized query range security ACLs. These ACLs ensure that authenticated users with appropriate read permissions can query records consistently across the platform.
- Seamless upgrade experience — New query ACL rules are installed automatically during upgrade, with no administrator action required. Automated upgrade scripts handle the transition, including detecting and processing previously customized ACLs to ensure existing processes continue without interruption.
Post-upgrade review for customized ACLs:
- If the instance includes administrator-modified query range ACLs, review those records after upgrade to confirm they align with the intended access policy.
Permissions and roles:
- To install the application, you require the System Administrator (admin) role.