Skip to content
ClearGRC User Guide

ClearGRC User Guide

  • Documentation
ClearGRC User Guide
ClearGRC User Guide

Getting Started

4
  • Signing In
  • Understanding the Dashboard
  • Navigation
  • Roles and Permissions

Common Workflows

9
  • Create and Approve a Policy
  • Complete an Assessment
  • Upload Artifacts
  • Review AI Artifact Analysis
  • Record and Assess a Risk
  • Create a Risk Response
  • Test a Control
  • Import Vulnerabilities
  • Complete a Vendor Assessment

Governance

6
  • Policy Center
  • Document Inventory
  • Third-Party Inventory
  • Company Setup
  • Process
  • Exception

Risk

5
  • Risk Register
  • Controls
  • Vulnerabilities
  • Assets
  • Threats

Compliance

3
  • Assessments
  • Cross Reference
  • Audit Inventory

Administration

5
  • Reports
  • Users and Roles
  • Framework Configuration
  • Notifications
  • Application Settings

FAQ

1
  • Frequently Asked Questions

Troubleshooting

1
  • Troubleshooting
View Categories
  • Home
  • Docs
  • Governance
  • Policy Center

Policy Center

3 min read

App navigation: Governance → Policy Center

Policy Center is the system of record for organizational policies – from authoring through review, approval, publishing, and retirement. It links policies to compliance framework citations and tracks who is responsible for each policy.

Screen Layout #

Navigate to Governance → Policy Center to open the Policy Inventory screen. It has two main areas:

  • Policy Summary panel – shows live counts of Total Policies and breakdown by status (Active, Draft, Under Review, Awaiting Approval), plus a Review Due panel showing policies due within 30 days and overdue policies. Each status count is a clickable filter.
  • Policy list – a filterable, sortable, searchable grid with columns: Actions, Status, Identifier, Title, Owner, Author, Effective From, Next Review Date. The toolbar includes Refresh, Filter, + Create, and a More menu (Export, Retired Policy, Bulk Review, Bulk Approve).

[Screenshot: Policy Inventory screen]

Policy Lifecycle #

Status Meaning
Draft Policy is being authored. Not yet submitted for review.
Under Review Submitted to reviewers for evaluation.
Awaiting Approval All reviews complete – waiting for approver sign-off.
Active Approved and published. The current version of the policy.
Retired Superseded or decommissioned. Accessible via the Retired Policy view.

Creating a Policy #

Prerequisites #

  • You must have the Admin, Owner, or Author role.
  • Reviewers and approvers must be configured as users before you can assign them.

Step 1 – Open the Creation Wizard #

  1. Select + on the toolbar.
  2. In the Policy Action dialog, choose Create Manually. (Choose Upload from File to bulk-create from a template.)
  3. The policy creation wizard opens with four steps.

Step 2 – Executive Summary #

  • Enter the Policy Title, Description, Effective From date, and assign an Owner and Author.
  • To link the policy to an Authority Document clause (e.g., ISO 27001), select the Citations toolbar button and add the relevant citation.

Step 3 – Stakeholders #

  • Assign one or more Reviewers and Approvers.

Step 4 – Security Objective #

  • Select the security objectives this policy addresses (Confidentiality, Integrity, Availability, or custom objectives).

Step 5 – Specification #

  • Enter the full body of the policy document.
  • Select Complete to submit the policy for review.

[Screenshot: Policy creation wizard – Executive Summary step]

Step 6 – Review #

  1. Assigned reviewers receive a notification and open the policy (status: Under Review).
  2. Each reviewer submits their decision. Once all reviewers complete, the policy moves to Awaiting Approval.

Step 7 – Approve #

  1. Assigned approvers receive a notification and open the policy.
  2. Once all approvers have approved, the policy status changes to Active.

Tip: Use Bulk Review or Bulk Approve from the More menu on the toolbar to process multiple policies at once.

Viewing an Existing Policy #

  1. Select the eye icon in the Actions column to open a policy in read-only Detail view.
  2. The detail view shows all wizard steps as tabs: Executive Summary, Stakeholders, Security Objective, Specification, Review Log, and Archived Versions.
  3. The Review Log tab shows the full audit trail of all review and approval decisions.
  4. The Archived Versions tab shows previous versions of the policy for comparison.

[Screenshot: Policy detail view showing the tab navigation]

Bulk Operations #

Use the More menu on the Policy Inventory toolbar to:

  • Bulk Review – apply review decisions to multiple selected policies at once.
  • Bulk Approve – apply approval decisions to multiple selected policies at once.
  • Export – export the current filtered policy list.
Updated on July 23, 2026

What are your Feelings

  • Happy
  • Normal
  • Sad

Share This Article :

  • Facebook
  • X
  • LinkedIn
  • Pinterest
ExceptionDocument Inventory
Table of Contents
  • Screen Layout
  • Policy Lifecycle
  • Creating a Policy
    • Prerequisites
    • Step 1 – Open the Creation Wizard
    • Step 2 – Executive Summary
    • Step 3 – Stakeholders
    • Step 4 – Security Objective
    • Step 5 – Specification
    • Step 6 – Review
    • Step 7 – Approve
  • Viewing an Existing Policy
  • Bulk Operations

© 2026 ClearGRC User Guide

  • Documentation