SlideShare a Scribd company logo
1 of 12
Download to read offline
An Intro to Resolver’s Compliance
Application
Hello!
I am Amanda Cohen
Application Manager at Resolver
amanda.cohen@resolver.com
RESOLVER APPLICATIONS
Risk
&
Regulation
Audit Improve
Policy
&
Control
Response
Incident
Report
Investigate Analyze ImproveMonitor
INTEGRATED RISK MANAGEMENT
PLANNING PREPARATION RESPONSE RECOVERYEVENT
Risk
&
Regulation
Audit Improve
Policy
&
Control
Response Investigate Analyze ImproveMonitor
INTERNAL AUDIT
PLANNING PREPARATION RESPONSE RECOVERYEVENT
RISK MANAGEMENT
COMPLIANCE
INCIDENT MANAGEMENT
Incident
Report
RISK AND COMPLIANCE
PROFESSIONALS
INFORMATION SECURITY
PROFESSIONALS
CORPORATE SECURITY
PROFESSIONALS
How Compliance Helps…
• Privacy Regulations
(PIPEDA, Privacy Shield, etc.)
• Anti-Money Laundering Legislation
• Canadian Anti-Spam Legislation
(CASL)
• American Disabilities Act (ADA)
• Foreign Account Tax Compliance
Act (FATCA)
• National Institute of Standards and
Technology (NIST)
• AICPA Trust Services Criteria
• ISO 27001
• Health Insurance Portability and
Accountability Act
• Payment Card Industry Data Security
Standard (PCI DSS)
• Clery Act and Crime Reporting
• International Association if Campus
Law Enforcement Administrators
(IACLEA)
• North American Electric Reliability
Corporation – CIP 14 (NERC)
• Security Risk Assessment
Methodology for the Petroleum and
Petrochemical Industries
(ANSI/API 780)
• Customs-Trade Partnership Against
Terrorism (C-TRAT)
Common Challenges
LACK OF CONFIDENCE
Ensuring the accuracy of data and the breath of coverage
COMPETING PRIORITIES
Compliance professionals are accountable to multiple stakeholders who present
conflicting priorities
MAXIMIZING BUDGET
Siloed teams result in the duplication of work, reduced accountability and
program inefficiencies
INEFFECTIVE AND DISPARATE PROCESSES
Siloed risk assessment requests result in risk owner fatigue and allows for
significant risks to go unnoticed
How Software Helps
PROVIDE AN OPINION ON THE STATUS OF COMPLIANCE
Demonstrate program effectiveness and how risk migration activities support
business priorities
RISK BASED PRIORITIZATION
Align compliance efforts with business priorities and areas of critical exposure
RELY ON THE THREE LINES OF DEFENCE
Stretch limited budgets by leveraging the work of other business units and reduce
the duplication of work
STREAMLINE PROCESSES TO ACHIEVE CONSISTENT DATA
Enterprise-wide coordination and consistency in how compliance risks are rated,
controlled, documented and reported
Goals
2018
Reduce Time and Cost to Deliver Software to Customers
Fast, efficient migrations and/or application expansion.
Visualize a Changing Risk Environment Over Time
Phase III of Assessments: Data that tells a story and supports cross organization
decision making.
Minimize Efforts to get Board (or meeting) Ready
Clean, concise, branded. Reduced time and effort to prepare shared reports.
A Tailored Experience to You - Personalization
Continuously tailored experience based of previous behavior.
Efficient and Supportive Communication that Inspires Collaboration
Software that encourages collaboration and clear communication between all user types.
WORKFLOW
IMPROVEMENTS
Processes will
handle the handoff
and notification of
relevant information
across teams and
various roles
ENHANCED
COMMNUNICATIO
N
Platform will enable
custom email
templates, summary
of my task, and an
email digest
PERSONALIZED
EXPERIENCE
Users gain a better
understanding about
what information is
relevant to them
TRENDING WITHIN
REPORTS
Information will be
presented in easy to
understand formats
to ensure insights
are simple to share
and communicate
REGULATORY
LIBRARY
A regulatory library of
relevant regulatory
standards
Q3 Q3 Q4 2019Q2
All information is confidential and subject to change.
““You would need 50 spreadsheets
and 30,000 VLOOKUP’s to get all
that information and present it using
Excel spreadsheets.”
Pam Huggler, Street Capital
Thanks!
Any questions?
amanda.cohen@resolver.com

More Related Content

What's hot

e-Symposium_ISACA_Ramsés_Gallego
e-Symposium_ISACA_Ramsés_Gallegoe-Symposium_ISACA_Ramsés_Gallego
e-Symposium_ISACA_Ramsés_Gallego
Ramsés Gallego
 

What's hot (20)

An Intro to Resolver's Incident Management Application
An Intro to Resolver's Incident Management ApplicationAn Intro to Resolver's Incident Management Application
An Intro to Resolver's Incident Management Application
 
An Intro to Resolver's InfoSec Application (RiskVision)
An Intro to Resolver's InfoSec Application (RiskVision)An Intro to Resolver's InfoSec Application (RiskVision)
An Intro to Resolver's InfoSec Application (RiskVision)
 
Integrated risk management
Integrated risk managementIntegrated risk management
Integrated risk management
 
Spreadsheets vs Software for SOX Compliance
Spreadsheets vs Software for SOX ComplianceSpreadsheets vs Software for SOX Compliance
Spreadsheets vs Software for SOX Compliance
 
An Intro to Core
An Intro to CoreAn Intro to Core
An Intro to Core
 
Information Security Best Practices: Keeping Your Company's Data Safe
Information Security Best Practices: Keeping Your Company's Data SafeInformation Security Best Practices: Keeping Your Company's Data Safe
Information Security Best Practices: Keeping Your Company's Data Safe
 
App Showcase: Compliance
App Showcase: ComplianceApp Showcase: Compliance
App Showcase: Compliance
 
Why Corporate Security Professionals Should Care About Information Security
Why Corporate Security Professionals Should Care About Information Security Why Corporate Security Professionals Should Care About Information Security
Why Corporate Security Professionals Should Care About Information Security
 
Risk Management Case Study - Applied Concepts
Risk Management Case Study - Applied ConceptsRisk Management Case Study - Applied Concepts
Risk Management Case Study - Applied Concepts
 
Reporting to the Board on Corporate Compliance
Reporting to the Board on Corporate ComplianceReporting to the Board on Corporate Compliance
Reporting to the Board on Corporate Compliance
 
Why Your Organization Should Leverage Data Science for Risk Intelligence and ...
Why Your Organization Should Leverage Data Science for Risk Intelligence and ...Why Your Organization Should Leverage Data Science for Risk Intelligence and ...
Why Your Organization Should Leverage Data Science for Risk Intelligence and ...
 
Infographic - Critical Capabilities of a Good Risk Management Solution
Infographic - Critical Capabilities of a Good Risk Management SolutionInfographic - Critical Capabilities of a Good Risk Management Solution
Infographic - Critical Capabilities of a Good Risk Management Solution
 
The Intersection of Risk, Security, and Performance
The Intersection of Risk, Security, and PerformanceThe Intersection of Risk, Security, and Performance
The Intersection of Risk, Security, and Performance
 
Enterprise Risk Management
Enterprise Risk ManagementEnterprise Risk Management
Enterprise Risk Management
 
Bring Better Data to the Office Opinion Party
Bring Better Data to the Office Opinion PartyBring Better Data to the Office Opinion Party
Bring Better Data to the Office Opinion Party
 
The Purpose of Holistic Risk Management
The Purpose of Holistic Risk ManagementThe Purpose of Holistic Risk Management
The Purpose of Holistic Risk Management
 
Building an Effective AML Program
Building an Effective AML ProgramBuilding an Effective AML Program
Building an Effective AML Program
 
Improve Your Risk Assessment Process in 4 Steps
Improve Your Risk Assessment Process in 4 StepsImprove Your Risk Assessment Process in 4 Steps
Improve Your Risk Assessment Process in 4 Steps
 
Globals - Too Big to Govern?
Globals - Too Big to Govern?Globals - Too Big to Govern?
Globals - Too Big to Govern?
 
e-Symposium_ISACA_Ramsés_Gallego
e-Symposium_ISACA_Ramsés_Gallegoe-Symposium_ISACA_Ramsés_Gallego
e-Symposium_ISACA_Ramsés_Gallego
 

Similar to An Intro to Resolver's Compliance Application

Power your businesswith risk informed decisions
Power your businesswith risk informed decisionsPower your businesswith risk informed decisions
Power your businesswith risk informed decisions
Alireza Ghahrood
 
CIA Quebec 11 Sept 2015 Presentation C Louis Final
CIA Quebec 11 Sept 2015 Presentation C Louis FinalCIA Quebec 11 Sept 2015 Presentation C Louis Final
CIA Quebec 11 Sept 2015 Presentation C Louis Final
Claire Louis
 
Supply Chain Transformation
Supply Chain TransformationSupply Chain Transformation
Supply Chain Transformation
Elm Valle
 
High lntegrity Services
High lntegrity ServicesHigh lntegrity Services
High lntegrity Services
ianthm
 

Similar to An Intro to Resolver's Compliance Application (20)

Ibm+ +bc-dr+-+28apr2010
Ibm+ +bc-dr+-+28apr2010Ibm+ +bc-dr+-+28apr2010
Ibm+ +bc-dr+-+28apr2010
 
Power your businesswith risk informed decisions
Power your businesswith risk informed decisionsPower your businesswith risk informed decisions
Power your businesswith risk informed decisions
 
Identity Management: Risk Across The Enterprise
Identity Management: Risk Across The EnterpriseIdentity Management: Risk Across The Enterprise
Identity Management: Risk Across The Enterprise
 
Qatar Proposal
Qatar ProposalQatar Proposal
Qatar Proposal
 
Information Risk Management - Cyber Risk Management - IT Risks
Information Risk Management - Cyber Risk Management - IT RisksInformation Risk Management - Cyber Risk Management - IT Risks
Information Risk Management - Cyber Risk Management - IT Risks
 
Risk Product.pptx
Risk Product.pptxRisk Product.pptx
Risk Product.pptx
 
How to Drive Value from Operational Risk Data - Part 2
How to Drive Value from Operational Risk Data - Part 2How to Drive Value from Operational Risk Data - Part 2
How to Drive Value from Operational Risk Data - Part 2
 
Happiest Minds NIST CSF compliance Brochure
Happiest Minds NIST  CSF compliance BrochureHappiest Minds NIST  CSF compliance Brochure
Happiest Minds NIST CSF compliance Brochure
 
Process Maturity Assessment
Process Maturity AssessmentProcess Maturity Assessment
Process Maturity Assessment
 
Hipaa hitech express slideshow 2013
Hipaa hitech express slideshow 2013Hipaa hitech express slideshow 2013
Hipaa hitech express slideshow 2013
 
PPT for CEO.pptx
PPT for CEO.pptxPPT for CEO.pptx
PPT for CEO.pptx
 
SAP grc
SAP grc SAP grc
SAP grc
 
CIA Quebec 11 Sept 2015 Presentation C Louis Final
CIA Quebec 11 Sept 2015 Presentation C Louis FinalCIA Quebec 11 Sept 2015 Presentation C Louis Final
CIA Quebec 11 Sept 2015 Presentation C Louis Final
 
Supply Chain Transformation
Supply Chain TransformationSupply Chain Transformation
Supply Chain Transformation
 
Maclear’s IT GRC Tools – Key Issues and Trends
Maclear’s  IT GRC Tools – Key Issues and TrendsMaclear’s  IT GRC Tools – Key Issues and Trends
Maclear’s IT GRC Tools – Key Issues and Trends
 
Fix nix, inc
Fix nix, incFix nix, inc
Fix nix, inc
 
Advanced Analytics for Asset Management with IBM
Advanced Analytics for Asset Management with IBMAdvanced Analytics for Asset Management with IBM
Advanced Analytics for Asset Management with IBM
 
IT Security and Risk Management - Visionet Systems
IT Security and Risk Management - Visionet SystemsIT Security and Risk Management - Visionet Systems
IT Security and Risk Management - Visionet Systems
 
High lntegrity Services
High lntegrity ServicesHigh lntegrity Services
High lntegrity Services
 
ClockworkISMS
ClockworkISMSClockworkISMS
ClockworkISMS
 

More from Resolver Inc.

More from Resolver Inc. (19)

ERM Benchmarking Survey Results
ERM Benchmarking Survey ResultsERM Benchmarking Survey Results
ERM Benchmarking Survey Results
 
Best Practices and ROI for Risk-based Vulnerability Management
Best Practices and ROI for Risk-based Vulnerability ManagementBest Practices and ROI for Risk-based Vulnerability Management
Best Practices and ROI for Risk-based Vulnerability Management
 
Taking a Data-Driven Approach to Business Continuity
Taking a Data-Driven Approach to Business ContinuityTaking a Data-Driven Approach to Business Continuity
Taking a Data-Driven Approach to Business Continuity
 
Terrorism in a Corporate Setting
Terrorism in a Corporate SettingTerrorism in a Corporate Setting
Terrorism in a Corporate Setting
 
Security Trends: From "Silos" to Integrated Risk Management
Security Trends: From "Silos" to Integrated Risk ManagementSecurity Trends: From "Silos" to Integrated Risk Management
Security Trends: From "Silos" to Integrated Risk Management
 
Modelling your Business Processes with Resolver Core
Modelling your Business Processes with Resolver CoreModelling your Business Processes with Resolver Core
Modelling your Business Processes with Resolver Core
 
How Resolver Uses Resolver
How Resolver Uses ResolverHow Resolver Uses Resolver
How Resolver Uses Resolver
 
Scammed: Defend Against Social Engineering
Scammed: Defend Against Social EngineeringScammed: Defend Against Social Engineering
Scammed: Defend Against Social Engineering
 
A Peek at adidas Group's Integrated Risk & Security Management Strategy
A Peek at adidas Group's Integrated Risk & Security Management StrategyA Peek at adidas Group's Integrated Risk & Security Management Strategy
A Peek at adidas Group's Integrated Risk & Security Management Strategy
 
Data Driven Risk Assessment
Data Driven Risk AssessmentData Driven Risk Assessment
Data Driven Risk Assessment
 
Keeping Your Data Clean
Keeping Your Data CleanKeeping Your Data Clean
Keeping Your Data Clean
 
Why You Should Prioritize Third Party Risk Management (TPRM) in Today's Marke...
Why You Should Prioritize Third Party Risk Management (TPRM) in Today's Marke...Why You Should Prioritize Third Party Risk Management (TPRM) in Today's Marke...
Why You Should Prioritize Third Party Risk Management (TPRM) in Today's Marke...
 
Leveraging Change Leadership to Find Success in your IRM Program
Leveraging Change Leadership to Find Success in your IRM ProgramLeveraging Change Leadership to Find Success in your IRM Program
Leveraging Change Leadership to Find Success in your IRM Program
 
Risk Intelligence: Threats are the New Risk
Risk Intelligence: Threats are the New RiskRisk Intelligence: Threats are the New Risk
Risk Intelligence: Threats are the New Risk
 
How to Use Storytelling to Communicate with Executives
How to Use Storytelling to Communicate with ExecutivesHow to Use Storytelling to Communicate with Executives
How to Use Storytelling to Communicate with Executives
 
Planning a move from Perspective to CORE
Planning a move from Perspective to COREPlanning a move from Perspective to CORE
Planning a move from Perspective to CORE
 
Creating an Enterprise-Wide Workplace Violence & Threat Assessment Team
Creating an Enterprise-Wide Workplace Violence & Threat Assessment TeamCreating an Enterprise-Wide Workplace Violence & Threat Assessment Team
Creating an Enterprise-Wide Workplace Violence & Threat Assessment Team
 
Lessons Learned in the Aftermath of Hurricanes Harvey & Irma
Lessons Learned in the Aftermath of Hurricanes Harvey & IrmaLessons Learned in the Aftermath of Hurricanes Harvey & Irma
Lessons Learned in the Aftermath of Hurricanes Harvey & Irma
 
Planning a move from GRC Cloud to CORE
Planning a move from GRC Cloud to COREPlanning a move from GRC Cloud to CORE
Planning a move from GRC Cloud to CORE
 

Recently uploaded

CALL ON ➥8923113531 🔝Call Girls Kakori Lucknow best sexual service Online ☂️
CALL ON ➥8923113531 🔝Call Girls Kakori Lucknow best sexual service Online  ☂️CALL ON ➥8923113531 🔝Call Girls Kakori Lucknow best sexual service Online  ☂️
CALL ON ➥8923113531 🔝Call Girls Kakori Lucknow best sexual service Online ☂️
anilsa9823
 
+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...
+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...
+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...
Health
 
CALL ON ➥8923113531 🔝Call Girls Badshah Nagar Lucknow best Female service
CALL ON ➥8923113531 🔝Call Girls Badshah Nagar Lucknow best Female serviceCALL ON ➥8923113531 🔝Call Girls Badshah Nagar Lucknow best Female service
CALL ON ➥8923113531 🔝Call Girls Badshah Nagar Lucknow best Female service
anilsa9823
 

Recently uploaded (20)

How To Troubleshoot Collaboration Apps for the Modern Connected Worker
How To Troubleshoot Collaboration Apps for the Modern Connected WorkerHow To Troubleshoot Collaboration Apps for the Modern Connected Worker
How To Troubleshoot Collaboration Apps for the Modern Connected Worker
 
Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...
Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...
Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...
 
HR Software Buyers Guide in 2024 - HRSoftware.com
HR Software Buyers Guide in 2024 - HRSoftware.comHR Software Buyers Guide in 2024 - HRSoftware.com
HR Software Buyers Guide in 2024 - HRSoftware.com
 
Steps To Getting Up And Running Quickly With MyTimeClock Employee Scheduling ...
Steps To Getting Up And Running Quickly With MyTimeClock Employee Scheduling ...Steps To Getting Up And Running Quickly With MyTimeClock Employee Scheduling ...
Steps To Getting Up And Running Quickly With MyTimeClock Employee Scheduling ...
 
Diamond Application Development Crafting Solutions with Precision
Diamond Application Development Crafting Solutions with PrecisionDiamond Application Development Crafting Solutions with Precision
Diamond Application Development Crafting Solutions with Precision
 
5 Signs You Need a Fashion PLM Software.pdf
5 Signs You Need a Fashion PLM Software.pdf5 Signs You Need a Fashion PLM Software.pdf
5 Signs You Need a Fashion PLM Software.pdf
 
Microsoft AI Transformation Partner Playbook.pdf
Microsoft AI Transformation Partner Playbook.pdfMicrosoft AI Transformation Partner Playbook.pdf
Microsoft AI Transformation Partner Playbook.pdf
 
Reassessing the Bedrock of Clinical Function Models: An Examination of Large ...
Reassessing the Bedrock of Clinical Function Models: An Examination of Large ...Reassessing the Bedrock of Clinical Function Models: An Examination of Large ...
Reassessing the Bedrock of Clinical Function Models: An Examination of Large ...
 
SyndBuddy AI 2k Review 2024: Revolutionizing Content Syndication with AI
SyndBuddy AI 2k Review 2024: Revolutionizing Content Syndication with AISyndBuddy AI 2k Review 2024: Revolutionizing Content Syndication with AI
SyndBuddy AI 2k Review 2024: Revolutionizing Content Syndication with AI
 
CALL ON ➥8923113531 🔝Call Girls Kakori Lucknow best sexual service Online ☂️
CALL ON ➥8923113531 🔝Call Girls Kakori Lucknow best sexual service Online  ☂️CALL ON ➥8923113531 🔝Call Girls Kakori Lucknow best sexual service Online  ☂️
CALL ON ➥8923113531 🔝Call Girls Kakori Lucknow best sexual service Online ☂️
 
The Real-World Challenges of Medical Device Cybersecurity- Mitigating Vulnera...
The Real-World Challenges of Medical Device Cybersecurity- Mitigating Vulnera...The Real-World Challenges of Medical Device Cybersecurity- Mitigating Vulnera...
The Real-World Challenges of Medical Device Cybersecurity- Mitigating Vulnera...
 
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...
 
+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...
+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...
+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...
 
Hand gesture recognition PROJECT PPT.pptx
Hand gesture recognition PROJECT PPT.pptxHand gesture recognition PROJECT PPT.pptx
Hand gesture recognition PROJECT PPT.pptx
 
Optimizing AI for immediate response in Smart CCTV
Optimizing AI for immediate response in Smart CCTVOptimizing AI for immediate response in Smart CCTV
Optimizing AI for immediate response in Smart CCTV
 
A Secure and Reliable Document Management System is Essential.docx
A Secure and Reliable Document Management System is Essential.docxA Secure and Reliable Document Management System is Essential.docx
A Secure and Reliable Document Management System is Essential.docx
 
call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️
call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️
call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️
 
Unlocking the Future of AI Agents with Large Language Models
Unlocking the Future of AI Agents with Large Language ModelsUnlocking the Future of AI Agents with Large Language Models
Unlocking the Future of AI Agents with Large Language Models
 
Right Money Management App For Your Financial Goals
Right Money Management App For Your Financial GoalsRight Money Management App For Your Financial Goals
Right Money Management App For Your Financial Goals
 
CALL ON ➥8923113531 🔝Call Girls Badshah Nagar Lucknow best Female service
CALL ON ➥8923113531 🔝Call Girls Badshah Nagar Lucknow best Female serviceCALL ON ➥8923113531 🔝Call Girls Badshah Nagar Lucknow best Female service
CALL ON ➥8923113531 🔝Call Girls Badshah Nagar Lucknow best Female service
 

An Intro to Resolver's Compliance Application

  • 1. An Intro to Resolver’s Compliance Application
  • 2. Hello! I am Amanda Cohen Application Manager at Resolver amanda.cohen@resolver.com
  • 4. Risk & Regulation Audit Improve Policy & Control Response Incident Report Investigate Analyze ImproveMonitor INTEGRATED RISK MANAGEMENT PLANNING PREPARATION RESPONSE RECOVERYEVENT
  • 5. Risk & Regulation Audit Improve Policy & Control Response Investigate Analyze ImproveMonitor INTERNAL AUDIT PLANNING PREPARATION RESPONSE RECOVERYEVENT RISK MANAGEMENT COMPLIANCE INCIDENT MANAGEMENT Incident Report
  • 6. RISK AND COMPLIANCE PROFESSIONALS INFORMATION SECURITY PROFESSIONALS CORPORATE SECURITY PROFESSIONALS How Compliance Helps… • Privacy Regulations (PIPEDA, Privacy Shield, etc.) • Anti-Money Laundering Legislation • Canadian Anti-Spam Legislation (CASL) • American Disabilities Act (ADA) • Foreign Account Tax Compliance Act (FATCA) • National Institute of Standards and Technology (NIST) • AICPA Trust Services Criteria • ISO 27001 • Health Insurance Portability and Accountability Act • Payment Card Industry Data Security Standard (PCI DSS) • Clery Act and Crime Reporting • International Association if Campus Law Enforcement Administrators (IACLEA) • North American Electric Reliability Corporation – CIP 14 (NERC) • Security Risk Assessment Methodology for the Petroleum and Petrochemical Industries (ANSI/API 780) • Customs-Trade Partnership Against Terrorism (C-TRAT)
  • 7. Common Challenges LACK OF CONFIDENCE Ensuring the accuracy of data and the breath of coverage COMPETING PRIORITIES Compliance professionals are accountable to multiple stakeholders who present conflicting priorities MAXIMIZING BUDGET Siloed teams result in the duplication of work, reduced accountability and program inefficiencies INEFFECTIVE AND DISPARATE PROCESSES Siloed risk assessment requests result in risk owner fatigue and allows for significant risks to go unnoticed
  • 8. How Software Helps PROVIDE AN OPINION ON THE STATUS OF COMPLIANCE Demonstrate program effectiveness and how risk migration activities support business priorities RISK BASED PRIORITIZATION Align compliance efforts with business priorities and areas of critical exposure RELY ON THE THREE LINES OF DEFENCE Stretch limited budgets by leveraging the work of other business units and reduce the duplication of work STREAMLINE PROCESSES TO ACHIEVE CONSISTENT DATA Enterprise-wide coordination and consistency in how compliance risks are rated, controlled, documented and reported
  • 9. Goals 2018 Reduce Time and Cost to Deliver Software to Customers Fast, efficient migrations and/or application expansion. Visualize a Changing Risk Environment Over Time Phase III of Assessments: Data that tells a story and supports cross organization decision making. Minimize Efforts to get Board (or meeting) Ready Clean, concise, branded. Reduced time and effort to prepare shared reports. A Tailored Experience to You - Personalization Continuously tailored experience based of previous behavior. Efficient and Supportive Communication that Inspires Collaboration Software that encourages collaboration and clear communication between all user types.
  • 10. WORKFLOW IMPROVEMENTS Processes will handle the handoff and notification of relevant information across teams and various roles ENHANCED COMMNUNICATIO N Platform will enable custom email templates, summary of my task, and an email digest PERSONALIZED EXPERIENCE Users gain a better understanding about what information is relevant to them TRENDING WITHIN REPORTS Information will be presented in easy to understand formats to ensure insights are simple to share and communicate REGULATORY LIBRARY A regulatory library of relevant regulatory standards Q3 Q3 Q4 2019Q2 All information is confidential and subject to change.
  • 11. ““You would need 50 spreadsheets and 30,000 VLOOKUP’s to get all that information and present it using Excel spreadsheets.” Pam Huggler, Street Capital