307 results found
-
[BL] Interim Assessment Table on Homepage
There should be a separate table for all Interim Assessments within an Organization displayed on the Homepage. There should be a clear label indicating that the Interim Assessment does not count against the 'Assessment Count'.
0 votes -
[BL] Only require Email Address when adding a New User
When adding a new user on an account MyCSF should only require the Account Admin or Super User to enter the users email address.
0 votes -
[BL] Allow Users to define First and Last Name when added to MyCSF
When a new user is created within MyCSF the user should be able to create/define their own First and Last name when first logging in to MyCSF.
1 vote -
[BL] Data Type Classification for Documents
MyCSF should include the data type classification for documents. Example- if a document type is Classified and/or Confidential then only users within the organization should be able to view that document. Should also be a classification type that is acceptable for Assessors to view.
2 votes -
[BL] Due Dates for User Delegation
Allow a User to specify the due date of a Statement that has been assigned to an individual. Notifications centered around these Statements 7310 days from deadline.
2 votes -
[BL] Inheritance Request Report
Would like a customer level report showing by requirement statement which requirements have had an inheritance request assigned the company/assessment of assignment and the date. Also would like to show acceptance/rejection by the external company.
Please include the following fields:Unique ID/Requirement Statement/Control Specification/Date Requested/Approved (Y/N)/ Date Approved/Denied
4 votes -
[BL] Expiration Date field should be Visible for Assessor Accounts
For Assessor Accounts the 'Expiration Date' field should be visible within the UI of the Administration page.
0 votes -
[BL] Ability to Update an Assessment Name
Within the Name & Security page MyCSF should allow HITRUST Users to modify an Assessment name after it has been submitted to HITRUST.
1 vote -
[BL] Multi-Language Support in MyCSF
Allow a user to change the language presented in MyCSF
Possibly localization depending on User's browser setting
1 vote -
[BL] Remove required documents from Recreated Certified Assessments
DIsable the check for the Assessment Required Document (e.g. Rep Letter Timesheet etc..) for the Assessment for Interim purposes.
2 votes -
[BL] Disable Converting Assessment to Offline Assessment
If an Account has an offline assessment credit then mycsf should automatically have the excel spreadsheets ready to be downloaded. Assessors should be able to access this page as well only if they have been assigned to the assessment to be an assessor they can access the page to download the offline assessment spreadsheets.
2 votes -
[BL] Root-level view for Control Reference within CSF Library
root-level view for control reference that opens up into the 156 control references and then opens up into the requirement statements listed under each control reference..
*Looking something like this: *
+ Control References
--- 00.a Information Security Management Program
--+ 01.a Access Control Policy
------- An access control policy shall be established documented and reviewed based on business and security requirements for access.
------- There shall be a formal documented and implemented user registration and de-registration procedure for granting and revoking access.If I understand correctly the problem with going through the category view is that control references may…
1 vote -
[BL] Weekly CAP SSRS Report
Automated Weekly Job to send HAX administrators CAP information within MyCSF. Delivery done in SSRS Report.
1 vote -
[BL] Submitted Date in Sidebar
Update the submitted by attribute on the sidebar to also log the date it was submitted.
1 vote -
[BL] Unique ID added to Linked Statements Modal
Include the Unique ID with the Statements list within the Linked Statements component
1 vote -
[BL] Reminders to Assessors of open tasks
As part of the Kanban board MyCSF will display the number of times the tool has notified the external assessor that a QA task is pending with them over a time period (eg: 4 notifications sent over 8 weeks). This metric will be visible to HITRUST the customer and the external assessor. Also is predicated on the tool sending messages that a QA task has been assigned to the external assessor (NOT notifications).
2 votes -
[BL] Update "Process" to "Procedure"
We have definitions for procedure and process in the glossary and they have separate meanings. Currently the tool shows the policy process implemented measure and manage instead of procedure.
27 votes -
[BL] Redact Comments from Inheritance
Capability to mask the Client and Assessor comments from being shared in an applied Inheritance Request.
A potential capability that lets them add an inheritance comment to a Statement and that is shared instead
5 votes -
[BL] Submit Statements in unfinished Domains
Functional change that allows a user to submit Statements in a domain that isn't fully answered yet. This would go for both Responses for Assessor and QA as well.
0 votes -
[BL] Edit/Delete Diary Entries
Feature allowing a user to edit or remove a diary entry
9 votes
- Don't see your idea?