|
Each day presents increasing demands
for ways to track, measure, and assess compliance with various legal mandates
for risk management, data security and privacy. By automating the process of compliance, organizations are able to efficiently enforce rules and
standards consistently across the entire enterprise.
About OneComply
OneComplyTM is an easy to use software that allows organizations to
manage their risk and compliance programs across multiple regulatory regimes. The product automates
the tedious task of identifying, assessing, tracking and measuring
compliance to many regulations.
The ready-to-view management reports will
ease the burden of complying to regulatory mandates such as FISMA, GLBA,
HIPAA and Sarbanes-Oxley. It comes with pre-stocked risk controls to support best
practices
standards from PCI, ISO 17799, BITS, NIST, AICPA.. These apply to specific
situations such as financial process, information security, privacy or outsourcing. It pin-points
controls that may be at risk. The weakness may be attributed to organizational
policies, procedures, control testing or process integration. This allows
enterprises to easily assess the various strengths and weaknesses of their
compliance. Roles based access control improves productivity of compliance
teams. OneComply allows organizations to aggregate the results over time and
view the trends of their compliance.
OneComply's reporting and dashboard provide high level and detailed views of an
organizations compliance programs. The web based interface allows users to
easily navigate to the compliance activities tasked to them.
OneComply provides an ability for companies to create its own
compliance framework using the pre-stocked knowledge base of key controls, or use its own
internally developed control framework. The interface is as easy as "drag
& drop" of the specific business and IT controls. This means organizations
can use one integrated approach for all their compliance needs. This prevents
repeated compliance audits and
reviews that come with silo and ad hoc methods.
Regulations Supported Out-of-the-box
SourceSentry has extensive knowledge and experience working
with the various regulations, frameworks and best practices. The following industry
specific laws that may be applicable to your industry sector are covered and supported
in the product :
Financial and Banking Industries
SOX 404, FFIEC, Bank Secrecy Act, AML, GLBA, PCI, Data
Privacy, NASD 3xxx, ISO 17799, CA 1386
Healthcare & Medical
SOX 404, HIPAA, Data Privacy, ISO 17799, PCI, CA 1386
Energy and Utilities
SOX 404, NERC CIP, Data Privacy, ISO 17799, PCI, CA 1386
If you don’t find a specific legal mandate covered for
your organization, give us a call and our experts can work to provide the content
along with risk controls.
Delivery Model
OneComply is offered to organizations in three ways:
Deploy within your enterprise
- As a standard web application, OneComply offers easy deployment,
administration and management. It integrates with your internal IT network and applications. The
rich knowledgebase of regulatory content will ease your compliance mandates.
Managed Service
- SourceSentry has partnered with a top tier hosting provider to offer a secure, reliable, subscription service called OneComply On-Demand. This involves zero
deployment, zero IT support, and zero hardware costs to you.
Personal Edition -
Deploy on laptop/desktop, for
individual use or for simple quick compliance audits.
OneComply Benefits
Key benefits :
-
Integrated methodology that provides tracing to industry standards / best practices
- Rich knowledge base of compliance controls for various laws
-
Automates the compliance process
-
Easy to use Web based interface
-
Pre-canned graphical reports to visualize areas of weaknesses and strengths
-
Advanced compliance dashboard and management reporting
-
Enables organizations to track compliance programs over time
- Workflow enabled with integration to corporate email
- Roles based access(assessor, reviwer, auditor, tester, manager etc) control increases productivity of teams
|