App navigation: Governance ? Company Setup (Authority Documents, Question Catalog) | Admin ? System ? Config
Framework Configuration covers the setup steps required to align ClearGRC with the specific compliance frameworks your organization tracks. This spans both Governance ? Company Setup and Admin ? System ? Config.
Adding Authority Documents (Frameworks) #
- Navigate to Governance ? Company Setup ? Authority Documents.
- Select + to add a framework from the built-in library (ISO 27001, NIST CSF, SOC 2, HIPAA, PCI-DSS, and 30+ others).
- Once added, the framework is available for selection when creating policies, assessments, controls, and cross-reference mappings.
[Screenshot: Authority Documents library]
Building a Question Catalog #
- Navigate to Governance ? Company Setup ? Question Catalog.
- Create a new catalog and add questions mapped to the authority document controls you want to assess against.
- The catalog is then available for selection when creating any assessment type.
Configuring Assessment Parameters #
Before any assessment can run:
- Configure Response Options (Governance ? Company Setup ? Response Options) – define your answer scale (e.g., Yes / No / Partial / Not Applicable).
- Configure Parameters (Governance ? Company Setup ? Parameters) – set scoring weights and acceptable risk exposure thresholds.
System Configuration #
Navigate to Admin ? System ? Config for system-level settings including:
- Email notification configuration.
- Session and security settings.
- Integration connection settings (see also Admin ? System ? Integrations).
Tip: Complete framework configuration before onboarding end users. The Setup Progress tile on the GRC Executive Dashboard tracks completion of these configuration steps.
