ServiceNow Governance, Risk, and Compliance provides the tools businesses use to proactively manage risk by measuring, testing and auditing internal processes. This solution helps business users ensure compliance to regulations, policies, standards and frameworks. It is available via the Standard, Professional, and Enterprise editions, the latter two supporting GRC and internal auditing processes.
N/A
TrackWise
Score 8.6 out of 10
N/A
Sparta Systems headquartered in Hamilton offers TrackWise, a quality management system designed to allow the user to leverage existing investment to quickly implement a cost-effective quality management system. Also, TrackWise Digital helps users to track and manage internal, third-party, and regulatory audits.
Oracle EBS R12 requires a unique user skillset to understand how it handles user access and functions. Accordingly, ServiceNow has this high level of sophistication to manage this information and apply it to Sensitive Access and Segregation of Duties rules to identify exceptions. This depth of configuration is critical to accurately identify when Oracle Responsibilities (access) truly allows access and thus could be a violation. ERPs with less complexity may not require this customization of ServiceNow GRC, but you would be wise to raise these questions and examples in the demo to ensure it will work for you. In the past, we have found that risks of under-reporting exceptions or false positives become so voluminous that users don't always get to the accurate violations for timely remediation. Proper configuration up front will improve your effectiveness and ROI down the road.
We use Trackwise to record non-conformances that are reported by our clients and also the non-conformances that are found within the manufacturing floor during the manufacturing process. TrackWise is extremely easy to use and can be customized as per user needs. It is easy to create records and define child-parent relationships in the software. Users can pull customized reports and they can create dashboards as per the business demands to make sure they can track non-conformance resolution cycle time. We use TrackWise in integration with SAP which makes the system accessible to a wider user base. It is not only used to record the non-conformances, but also the part disposition details in cases where a part is supposed to be delivered from the client to us and in cases where the part is delivered to suppliers. We also use TrackWise to record the corrective actions and root cause for the reported issue. Trackwise is widely used to record Audits assessments in our organization. Trackwise is also used to report workmanship issues and to record the cycle time involved to resolve the issue and corrective actions taken to avoid the issue in the future.
Finding reported by the auditor. GRC helps us identify, assign, and track the resolution of this.
Exception to information security policy. These require quarterly reviews and setting up reminders to revisit these.
Building out new projects and baking security and compliance into the project and tracking it in GRC to ensure we deliver a compliant product on day one
Delivering more out of the box functionality that rivals other GRC platforms. The bare bones approach may not help companies that do not have expertise or capabilities to build effective GRC processes.
Easier way to implement workflow.
Offering better metrics without buying add-on tools.
I'm satisfied with our experience. The configuration was the biggest challenge, but we have moved onto the stage of user training and usability. We would appreciate having better user training documentation and possibly videos and/or computer-based training to help our international users adopt this software for their GRC needs.
It is easy to use. Easy navigation. Flexible to customize. Real-time analytics help to track the record cycle time. Can be used by multiple departments for various business processes.
It's a good system, but I am awaiting key features in the new release. We hear that ServiceNow is continually adding new features and we look for improved reporting, better Oracle Integration, and user training opportunities. To the extent these materialize, we expect further improvements in our experience with ServiceNow GRC. Until that time, though, we believe we are meeting our objectives expected at the beginning of this project.
We just recently started using TrustArc for data privacy requests and I can already speak to the fact that TrustArc is a more confusing platform once there. The positives of ServiceNow would be that a majority of our URL's drive to owned websites which our employees are very comfortable with using versus pushing them to another website that feels unsafe.
Trackwise is better than Arena. You need sign-offs before moving to the next step. While in Arena, you can complete the whole task and request sign off later. Not sure which is better for everyone, but I prefer to sign off before moving to the next step.