arrow-left

All pages
gitbookPowered by GitBook
1 of 2

Loading...

Loading...

Manage extended result

Minor nonconformity, Major nonconformity, etc.

hashtag
Manage Minor Nonconformities And Audit Results Efficientlyarrow-up-right

This tutorial guides you through managing minor nonconformities and major audit results within your compliance assessments

hashtag
Go to your instance

hashtag
1. Introduction

You will learn how to add extra attribute to your audit through extended result.

hashtag
2. Open your audit

Click "ISO 27002 SOA" to access the relevant compliance assessment for managing audit results.

hashtag
3. Enter Edit Mode

Click "Edit" to enable modifications on the selected compliance assessment.

hashtag
4. Access More Options

Click "More" to reveal additional settings and options for the assessment.

hashtag
5. Enable extended result

Click "on" to activate the desired feature or option within the assessment settings.

hashtag
7. Save audit Changes

Click "Save" to apply and store the changes made to the compliance assessment.

hashtag
10. Open a requirement

Click "4.1 - Understanding the organization and its context" to examine specific requirements.

hashtag
11. Choose the value for your extended result

Select the appropriate category such as major nonconformity, minor nonconformity, observation, opportunity for improvement, or good practice.

hashtag
14. Make sure it's consistent with the audit result

Click the note stating "Major and minor nonconformities are only applicable when result is non-compliant or partially compliant." to understand criteria.

hashtag
17. Select the value and save

Click "Save" to store the additional nonconformity or observation details.

hashtag
21. Use the Observation field for more Information

Click "Save" to finalize and save the observation or nonconformity information entered.

You have successfully managed minor nonconformities and major audit results by editing, documenting, and saving relevant compliance assessment details. This ensures accurate tracking and supports effective audit management for your organization.

Compliance

This is where you can carry out your compliance work based on the framework of your choice.

hashtag
Framework

The fundamental object of CISO Assistant for compliance is the framework. It corresponds to a given standard, e.g. ISO27001:2022. They can be imported from the library. If you don't find a framework which fits your needs, no worries, you can build your own framework and add it to CISO Assistant!

hashtag

Audit

This allows you to assess your compliance with the chosen framework through different statuses for each requirement that requires one of the following:

  • To do

  • In progress

  • Non compliant

  • Partially compliant

  • Compliant

  • Not applicable

circle-info

Evaluate a requirement inside a compliance assessment is called requirement assessment

hashtag
Evidence

Evidence allows you to use a description, link or file to justify the status of a compliance requirement or to prove that a control has been applied. They can therefore be associated with different applied controlsarrow-up-right or requirement assessments.

Introduction
Open ISO 27002 SOA Assessment
Enter Edit Mode
Access More Options
Enable Specific Setting
Save Assessment Changes
Open Context Subsection
Choose Nonconformity Type
Review Nonconformity Applicability
Save Additional Entry
Save Observation Information