Product OverviewThe key to protecting the organisation from compliance and information security problems is the participation of all users, including staff and contractors, in the ongoing initiatives that are in place to mitigate the risk of incidents and compliance failure. However obtaining and ensuring, continuity of this user participation is very difficult and quite costly to execute using existing management tools, structures and processes. In addition, reporting on compliance using these largely manual approaches is patchy at best, further hindering the organisation’s capability to demonstrate compliance.
The MetaCompliance suite of software products has been developed to solve these types of problems through the implementation of easy to use compliance automation. MyCompliance is the latest addition to the product suite and is aimed at encouraging the user to participate in compliance activities. MyCompliance allows the user to access compliance content at anytime, from anywhere, from any device. MyCompliance makes compliance easier for the user through ease of getting to their compliance obligations and as a result of making the experience as intuitive as possible via a graphically rich portal.
From our experience, users will engage in compliance activities if access to content and tasks is made as simple and swift as possible. The majority of users recognise that compliance is a necessary element of working in a modern organisation that relies on data and is based on information technology. They accept that participation in compliance programs is an aspect of their employment contract. However, it is expected that the organisation provide the means for these obligations to be undertaken in the quickest and easiest way possible. MyCompliance provides the means by which users are facilitated.
In practice, this means that a user can access compliance content at work. Alternatively, the user can access MyCompliance from their home PC or during their commute to work and can deal with obligations such as annual surveys, company policies, e-learning and media learning. MyCompliance is a Cloud based environment that facilitates these access needs of a modern staff and contractor population. All that is required is a browser or the MyCompliance mobile application.
Incorporating mobile devices in compliance projectsThe explosion of mobile devices within the workplace is set to continue. Mobile devices are used by the user population during fallow time such as their commute to work. MyCompliance allows the organisation to capitalise upon these remote access opportunities. The software provides the ability for users to access their policies, risk assessments, surveys, e-learning and media learning via the MyCompliance mobile application.
This use of consumer technology within the organisations compliance strategy encourages the engagement of the user in the risks for the organisation.
Recognised as a foundation of most organisations today, partners and third parties are intimately involved in key business processes that allow the organisation to function. However, whilst significant focus is placed on the insider threat, often the issue of third parties is over looked. This is particularly true in relation to compliance and IT security frameworks. There are significant challenges to incorporating third parties in compliance programs
Bringing partners and third parties into the compliance framework
MyCompliance provides the mechanism to bring third parties into key compliance programs that form the basis of an organisation’s corporate governance structure. As with internal staff, MyCompliance allows compliance content such as policies, surveys, e-learning and media learning to be disseminated to trusted third parties via a graphically rich portal or via the MyCompliance mobile application.
The carrot and stick approach to compliance participationOne of the major sources of compliance project failure is lack of user interest and participation. The MetaCompliance suite of software was developed to help resolve these problems. MyCompliance can be implemented within an organisation as a standalone compliance policy management and user awareness environment. However, MyCompliance is fully integrated into the MetaCompliance Advantage and Enterprise products.
The MetaCompliance Advantage and Enterprise products are market leading policy and user awareness management solutions. Their unique enforcement capabilities allow an organisation to ensure that users participate in their compliance initiatives through the deployment of a myriad of enforcement features. This functionality is critical for including that percentage of all user audiences that fail to participate in any compliance project without the expenditure of significant time and money to make sure they cooperate.
MyCompliance has the objective of engaging with the user and of facilitating access to compliance content with great ease and through its attractive user interface and functionality. Simply put, MyCompliance encourages involvement and MetaCompliance Advantage and Enterprise enforces participation in regulatory activities.
Inclusive compliance for all staff and suppliersMetaCompliance has identified that provision of an Active Directory (AD) account for all staff and third party contractors can be a challenge for many organisations. MyCompliance provides innovative functionality that allows both existing network users and external users to access compliance content using both AD accounts and alternative methods of authentication.
In practice, this means significant ease of use for existing users, who can access MyCompliance from outside the corporate network, such as from home or from a mobile device, yet users can still use their work login credentials. This saves the need for staff to remember yet another username and password. On the other hand users who do not have AD accounts, such as security personnel, would be able to access MyCompliance from any device using alternative credentials such as their payroll number or a chosen unique identifier selected by the organisation.
MyCompliance likewise enables partners who might not have an AD account to access compliance content using appropriate authentication. Successful Compliance, Human Resources and IT Security Projects require the participation of the organisations’ user community. Successful user participation arises from a combination of engagement and enforcement of organisational policies, processes and oversight activities. The MetaCompliance suite of software provides automation to ensure user participation, thus mitigating the risk of compliance failure and reducing the cost of implementing policy and awareness initiatives.