workflow

Enterprise GRC Platform Integration Bridge

Runs on a Process item created at kickoff (process_type = it_general_control, process_owner = the integration owner, frequency = the sync cadence) that represents the bridge as an operated, auditable IT process — the workflow instance attaches to and enriches that Process item, never a duplicate. Bridges an external enterprise GRC platform (e.g., RSA Archer, ServiceNow GRC, Workday, AuditBoard) with AssureSwarm: define field and ID mappings, run the initial migration or provisioning (which creates Risk / Control / Issue / Audit / Policy items and Control-hosted testing workflows for imported control-test records), operate a monitored bidirectional scheduled sync, resolve conflicts, and confirm system-of-record agreement. This workflow originates the integration project — it consumes no upstream handoff. In scope: mapping design, initial load, ongoing sync operation and health monitoring, conflict resolution, and system-of-record sign-off. Out of scope: standing up the external GRC platform itself, and the downstream assurance analysis. The named deliverable is a version-stamped final bridge package (evidence index, executive summary, authoritative per-field system-of-record coverage table, open-items list), handed to the Combined Assurance Mapping workflow, which consumes it rather than re-deriving the record inventory.

In catalog since 2026-09-17T22:28:00Z · Last changed 2026-10-04T21:48:26Z (791ff2dd3a45)

Record JSON · Open in map · Data retrieval guide

Catalog revision: 791ff2dd3a45707290badee660f185e514d15f1cf518908628f425c2f2c56ee4. A connection does not establish full coverage.

Attributes

domain
grc
department
it
lineOfDefense
monitor

Details

teams
  • it
  • risk-management
domains
  • grc
standards
    sourceTemplateId
    workflow-library:grc-platform-integration-bridge
    releaseId
    sha256:d5ee50e454abfe37d7fb56bab2125c5a95a5ee821c22fe8dff671c9fcdc14f18
    canonicalUrl
    https://evidenceflows.com/workflows/all/?w=grc-platform-integration-bridge
    capabilities
      mappingStatus
      mapped
      lineOfDefense
      monitor
      controls
      • UC-AUDIT-25
      • UC-ACCESS-20
      roleIntegrity
      activityCount
      0
      ermPhases
        lineRoles
          serviceModes
            warnings

              Source

              No record-specific source URL is provided.

              Download workflow template · Release: sha256:d5ee50e454abfe37d7fb56bab2125c5a95a5ee821c22fe8dff671c9fcdc14f18

              Connections