intuitem / ciso-assistant-community

CISO Assistant is a one-stop-shop for GRC, covering Risk, AppSec and Audit Management and supporting +54 frameworks worldwide: NIST CSF, ISO 27001, SOC2, CIS, PCI DSS, NIS2, CMMC, PSPF, GDPR, HIPAA, Essential Eight, NYDFS-500, DORA, NIST AI RMF, 800-53, 800-171, CyFun, CJIS, AirCyber, NCSC, ECC, SCF and so much more
https://intuitem.com
GNU Affero General Public License v3.0
968 stars 107 forks source link

Level of Conformity till next audit #566

Open AndrzejRPiotrowski opened 3 weeks ago

AndrzejRPiotrowski commented 3 weeks ago

Problem statement I want to show level of done till audit that is planned in the future

Expected behavior

  1. Go to existing controls and check if every control has evidence added
  2. Check if audit date is selected
  3. Show number/level of maturity (if previous audit was done)

Additional context It should be visible as map / information, could be exported to pdf to show to Top Management

AndrzejRPiotrowski commented 3 weeks ago

Control Evidence Verification:

Navigate to the section listing existing controls. For each control, verify whether evidence/documentation has been attached to substantiate compliance. Audit Date Confirmation:

Ensure that a future audit date is set for each control. Maturity Level Display:

Calculate and display the maturity level of each control, considering whether a previous audit was completed and the outcomes of that audit. The maturity levels should be quantifiable to track progress and identify areas needing improvement.

Visualization: The maturity levels and completion status should be presented in a visual format, such as a map or a graphical representation, to provide an intuitive overview of compliance status. Export Capability: There should be functionality to export this visual representation into a PDF format. This exported document should be suitable for presentation to Top Management, containing comprehensive details about the controls' status and maturity levels.