Workflow for BoardX Advanced Compliance Workspace
Phase 1: Pre-mapping
This foundational phase involves setting up the essential elements required for a structured compliance framework.
Action: Download the content pack containing applicable regulations, policies, and standards relevant to your organisation.
Action: Create entity groups if needed to manage control tasks collectively, useful for coordinating departments or teams.
Action: Define and assign compliance roles. Note that all compliance objectives are pre-linked to the Compliance Officer role. Assigning someone to this role automatically maps them to all compliance objectives, activating controls in draft mode. Define the control launch date for these objectives next.
Action: Upload and organize key compliance documents and policies. These documents will appear as evidence recommendations when completing compliance assessments and help identify document gaps.
Action: Set thresholds for compliance to prioritize and trigger actions based on the severity and impact of potential compliance issues.
Action: Optionally review and adjust the applicability of specific citations within your content pack to tailor compliance requirements to your organization’s needs. Define and categorize Master Controls, set their classification types (Preventative, Detective, Reactive), and determine how frequently each should be reviewed or triggered.
Action: Adjust the applicability of specific citations based on organizational needs.
Phase 2: Mapping Compliance Objectives
This phase focuses on effectively linking compliance objectives to relevant entities or groups and scheduling necessary control tasks.
Linking Entity (Roles) or Entity Group to Master Controls
Action: Attach entities or entity groups to specific Master Control, ensuring the correct teams or roles are responsible for relevant tasks.
Set Up Control Launch Date and Due Date for Master Controls
Action: Schedule the initial launch and establish due dates for each compliance control to ensure timely execution and compliance checks.
Phase 3: Post Mapping
The final phase involves the active management and completion of compliance tasks.
Action: Manage and complete control tasks, including assessing control implementations, documenting outcomes, and providing necessary evidence.
Additional Notes:
Documentation and Evidence: Maintain thorough documentation and evidence for each task throughout all phases, particularly in the post-mapping phase, to support compliance claims and facilitate audits.
Review and Adjust: Regularly review and adjust the entire compliance setup to respond to new regulations, organizational changes, or external factors that may impact compliance.
This structured workflow ensures that your organization can effectively manage its compliance responsibilities through BoardX Advanced Compliance Workspace, from initial setup to ongoing compliance task management.