Working with assessments in Asset Manager

In the Asset Manager app, you can view assessments from both Risk Manager and Projects.

The Asset Manager app requires a subscription to IT Risk Management (previously ITRMBond) or Third Party Risk Management (previously ThirdPartyBond).

Where can I see the assessments?

Perform the following steps to view the assessments in the Asset Manager app:

  1. Open the Asset Manager app.
  2. Click the asset type that contains the asset you want to work with.
  3. Click the asset you want to work with.
  4. Go to the Assessments tab.

How does it work?

Based on the relationships of an asset with other objects such as risks, controls, and projects in the Relationships tab, the assessments are fetched from both Risk Manager and Projects.

Assessments from Projects

The assessments are fetched from the Projects app based on the relationship of an asset with a project. A project is linked to an asset when an asset is scoped with a project in the Projects app.

After an asset is scoped, you can view the associated projects in the Relationships tab of Asset Manager, and the assessments of that project appear in the Projects - Results section under the Assessments tab of Asset Manager.

Note

The assessments that are displayed in the Asset Manager app depend on the risk categories an asset is scoped with. Therefore, a project can have multiple risk categories, but assessments are displayed from only those risk categories that were selected when scoping the asset.

Note

Interface terms are customizable, and fields and tabs are configurable. Elsewhere in Diligent One, risk categories may also be called objectives, sections, processes, cycles, functional areas, application systems, or another custom term.

What do the assessments from projects contain?

The assessments from the Projects app are displayed in the Projects - Results section under the Assessments tab of Asset Manager.

The Projects - Results section shows the list of projects that are associated with the asset, with the following details:

  • Design effectiveness
  • Operational effectiveness
  • Assurance risk
Navigating in the Assessments tab
  • You can expand the project to view the details by risk category.
  • You can click on the name of the project or the risk category to navigate to the Projects app if you want to make any changes.
  • You can click Column Config and turn on or off the columns you want to show or hide.

Note

Interface terms are customizable, and fields and tabs are configurable. Elsewhere in Diligent One, risk categories may also be called objectives, sections, processes, cycles, functional areas, application systems, or another custom term.

Assessments from Risk Manager

The assessments are fetched from the Risk Manager app based on the relationship of an asset with the risks and controls. You can link an asset to a risk or a control in the Risk Manager through the Relationships tab of Asset Manager. Once a risk or control is linked, the assessments of that risk or control show up in the Risk Manager - Results section under the Assessments tab of Asset Manager.

What do the assessments from Risk Manager contain?

The assessments from the Risk Manager app are displayed in the Risk Manager - Results section under the Assessments tab of Asset Manager.

The Risk Manager - Results section shows the list of associated risks and controls, with the following details:

  • Risks ID, owner, inherent risk, residual risk, workflow status.
  • Controls ID, owner, design effectiveness, control effectiveness, workflow status.

Tip

You can click on the name of the risk or control to navigate to the Risk Manager app if you want to make any changes.

Is the assessments data live?

Yes, the Assessments tab in Asset Manager shows live data. Real-time data is fetched into the Asset Manager app each time there is any change in the assessments of either the Projects app or the Risk Manager app.