The client is a banking and financial services company. Their existing asset-based assessment solution was causing multiple issues as it was manual and time consuming leading to significant delay in completion of the assessment. They were looking for a vendor who could automate the entire process for an efficient IT risk assessment.
Infosys re-designed the assessment solution and automated the process using RSA Archer. This led to timely completion of the assessment process and ensured overall compliance with the organization policies.
Key Challenges
- Time consuming and manual security control assessment of each asset by system owners and assessors
- Lack of assessment workflow notifications to system owners, assessors and other stakeholders
- Non-compliant security controls due to lack of required evidences
- Delay in timely completion of assessment due to lack of integration between various security tools and RSA Archer
- Lack of functionality to submit multiple assessments at the same time
Ready to experience?
Talk To ExpertsThe Solution
Assessment made easy with automation
Redesigned the overall assessment process leading to enhanced reporting of security controls
Integrated security tools with RSA Archer and enabled auto population of control responses thus saving efforts
Enabled the functionality to pre-populate previous cycle’s responses into the current assessment cycle
Built a feature to display applicable controls based on the asset type
Enabled automatic identification of assets that required assessment
Benefits
Quicker redressal of non-compliant controls
Overall assessment cycle reduced from six months to 30 days
Increased control testing reliance by activating auto-population of control responses from security tools
User friendly dashboard to cater to requirements of various stakeholders and improved compliance reporting
Optimized time by enabling submission of multiple assessments simultaneously
Improved assessment review process with regular system generated notifications
Faster identification of non-complaint controls leading to quick remediation
Eliminated the process of manual scoping of assets using automation
Request for services
Find out more about how we can help your organization navigate its next. Let us know your areas of interest so that we can serve you better.