5. Using << assessment >>

The assessment module is primarily used by ordinary Isora GRC users. As an administrator, you can view the state of all current assessments, launch surveys and even complete them. Ordinary users would only see portions of an assessment that impact them.

In some (small-scale) environments, Isora GRC administrators may be responsible for not only creating assessments, but also answering the questions to complete them. In larger institutions, it would be typical for Isora GRC admins to only fill out a survey for their own organizational unit, and other people would fill out surveys for their respective OUs.

Depending on the target type, assessments will look somewhat different from each other. Presently, the only supported target types are "org unit" and "app."

Organizational (org unit) assessments are structured around the concept of the Organizational Unit. When you create an assessment, you choose which OUs to include. A survey will be created for each one. The survey includes both unit-level questions and host categorization. If no sheets are assigned to an OU, then that survey will consist solely of unit-level questions, with an empty host categorization section. When you view the assessment in the assessment module, each assessment is broken down into the surveys it is comprised of.

An app assessment consists of a single survey for one single app. The survey has two parts- questions and classification. Unlike an organizational assessment, which may include many host classifications, the app survey just has one overall classification question, which applies to the app itself.

You can only view existing assessments or launch surveys with the assessments module. To create a new assessment or to edit an existing one, use the admin module.

Next: 5.1 Launching a survey







If you can't find what you are a looking for and need support, email support@saltycloud.