Getting started with Compliance Maps
Federal organizations often need to be compliant with hundreds of requirements. Audit departments are also involved in compliance when they have internal policy requirements they need to track to ensure all is operating effectively.
To showcase your organization's adherence to specifications relevant to the business, you can create a compliance map. The three stages of creating a compliance map are as follows:
-
Identify the compliance scope and note the requirements that are applicable to your organization.
-
Specify the reasons for the requirements that are not applicable.
-
Link controls to requirements.
After linking controls to requirements, testing results and issues are aggregated in the compliance map, enabling you to:
- Identify gaps
- Prioritize issues
- Track compliance progress