Back to: Action ITAM Fundamentals
The Action ITAM feature in Continuum GRC is designed to provide an automated form of communicating requests with your client and visually holding everyone accountable.
At a minimum, when you enter an Action ITAM, you must be directing the client to provide something for that control requirement. If you need evidence, ask for it specifically. If you need clarification about an implementation statement they wrote, ask them specifically for what you want.
Avoid restating the control requirement because that is already present. If a part of a control response is missing, ask for that part specifically.
Action ITAMs help keep customers focused on their tasks, which helps the project move forward.
Always remember to move a Status Indicator to Red when adding a Action ITAM. If you are creating an Action ITAM that is associated with a control statement that has a companion upload field, also move a Status Indicator to Red.




Related Posts