Security and Compliance Workflow
An outline of a Compliance Project workflow
Compliance Project Steps
1. Assign Program Ownership
2. Select a GRC Tool (optional but recommended)
3. Engage a Security/Compliance Partner (optional)
4. Define Policies
5. Implementation of Security Controls
6. Enable Security Information and Event Management (SIEM)(Optional)
7. Enable Virus Scan (AWS) or Defender (Azure).
8. Enable BCP/DR and produce Policy and Activity documents.
9. Penetration Testing* (If Required)
10. Gather Evidence for Compliance
11. Auditor Appointment
12. Security White Paper
13. Ongoing Management
Configuration for Specific Cloud Providers (if applicable)
Last updated
Was this helpful?

