A comprehensive handbook for every module in GRC CXOkit — how each workflow is meant to be used, what "good" looks like, and step-by-step procedures for the modules that matter most, like conducting an audit end to end.
Administration
Audit Procedure
Getting Started
Module Guide
Business Unit Dashboards & Comparison
Scope the whole platform down to a single business unit, or compare several side by side.
Frameworks & Regulatory Requirements
How frameworks, requirements and controls relate to each other — and where to see and configure the mapping.
Compliance by Regulation & the Unified Control Framework
How one control assessment updates every regulation it is mapped to, automatically.
Controls: Testing, Effectiveness & the Unified Compliance Engine
The core workflow: design, test and remediate controls.
Risk Register & Key Risk Indicators
Scoring risk, appetite thresholds and KRIs.
Findings: Lifecycle from Raise to Closure
Where findings come from and how they get resolved.
Remediation Actions & the Action Board
Tracking remediation work to completion.
Evidence Collection, Review & Cloud Linking
Uploading, reviewing and reusing evidence — including cloud-linked evidence.
Policy Lifecycle & Acknowledgement Tracking
Drafting, approving, publishing and tracking acknowledgement of policies.
Business Continuity Planning (BIA & Recovery Plans)
Conducting a Business Impact Analysis and building recovery plans directly in the tool.
Tabletop Exercises & Customisable Playbooks
Building reusable incident playbooks and running facilitated tabletop exercises.
Third-Party & Vendor Risk Management
Onboarding, assessing and monitoring vendors.
Incident Management & Reporting Timelines
Logging incidents and meeting regulatory notification SLAs.
Regulatory Filings Tracker
Never miss a statutory filing deadline.
Data Subject Requests & DPIAs
Handling DPDP Act data-principal rights and privacy impact assessments.
Committees & Governance Oversight
Running the board and management committees that oversee risk and compliance.
Connector Marketplace & Security Posture
Plugging in ITSM, evidence storage, scanning and CSPM/DSPM tools.