News

...now browsing by category

 

Tweak Here, Tweak There

Sunday, August 7th, 2011

easy2comply is about to celebrate its 7th birthday, and this is a good time to clean up the horses and fix the many little things you have asked for during these years. So, without further notice, here are the tweaks we have adjusted recently:

  • Multi-lingual names: It is great to have a multi-language user-interface so international organizations can work easily on easy2comply. However, what was still problematic to some was that when the UI was compatible with their local language, the content was not.Thus, we are proudly announcing the new feature of translating the control and risk names to your local language and up to 3 languages simultaneously.
    These changes will affect the reports as well.

  • Simplified delete options: The delete option was one of those features that received considerable question.  What happened when you deleted?  Did you really delete it?
    So, in response, we have decided to clarify this sensitive feature. Now you will have two different options instead: “Hide” and “Delete”. We have also added a warning message, as well as instructions on how to undo these actions, if needed.

  • Click to continue »

A Peek into Denmark’s GRC World with Nordic Risk Management ApS

Monday, August 1st, 2011

As part of easy2comply growth in key-markets, we have recently partnered with Denmark’s Nordic Risk Management ApS and their affiliate Risk Solutions ApS in our continuing effort to meet the GRC requirements of worldwide customers.

We were curious about the GRC environment in Scandinavia, and since you might be too we’re sharing an excerpt from a recent session we had with Risk Solutions ApS, Nordic’s software solution affiliate.

Q: What is the level of awareness of the GRC market in Denmark in general and what are the most common regulations in particular?
A:  The general awareness of the GRC challenges is rising in Denmark; though it has been on a pretty low level. To actively integrate the work on governance, risk and compliance will change the way companies think and the possibilities for companies to enjoy real business benefits.

Q: Are there any local regulations in Denmark that differ from EU common regulations?
A:  A very big part of the Danish regulations originate in common EU rules. However, all EU rules have to be implemented in local regulations. Most EU regulations are based on what is called “minimum standards”. The individual countries can choose to implement tougher. Most Danish regulations are tougher than prescribed in the common EU rules.

Click to continue »

New Enhancements to easy2comply Incident Management Software

Monday, July 18th, 2011

Central to every Incident is the fact that something has occurred that either was undesired or unexpected. Incident Management is an important weapon to have in your GRC arsenal as it provides end-to-end management for directing how incidents should be handled and it helps us learn about how things have gone wrong in the past, to better prepare for the future.

Incidents are the opposite side of the coin to Risks. A risk is the potential impact to the company. An Incident is the expression of that risk. Incidents are real events; risks are predictions. Incidents should always link back to risks even though there will rarely be a one-to-one relationship between them.

easy2comply fully supports collection and evaluation of information regarding different types of incidents whether they are:

  1. Loss Events – used by the Financial Services industry to report that money has been lost.
  2. Security Breaches – used by any firm to indicate a network or application breach.
  3. Compliance Events – used by businesses to record regulatory breaches. Click to continue »

Powerful new easy2comply feature: Customizable Desktop!

Tuesday, May 31st, 2011

I am proud to announce our newly released version of easy2comply featuring a customizable Desktop! Now when you log in to easy2comply the critical information you want to see first will immediately be on-screen waiting for you.

Version 1 of new interactive desktop solution features 4 customizable drag & drop widgets:

  • Welcome Messages – customizable by department or group
  • My Tasks – a widget for your To Do list (e.g., reminders, sign-offs awaiting approval, incidents pending remediation, exception notices, etc.)
  • Charts & Graphs – choose from 5 different compliance calculation dashboards
  • Favorites – a widget for your favorite internal and external links

Simply configure your desktop to suit your professional needs and the data will be pushed to you. When your needs change, you can easily make modifications with a few clicks and the convenient drag & drop features.

Currently on our drawing board for a future release: additional widgets and dashboards, and powerful configuration options for a more personalized design. If you have ideas for features you’d like to see in incorporated into easy2comply, please contact us – we look forward to hearing from you.

Top 5 Corporate Penalties – Fraud, Bribery & Conspiracy

Monday, May 16th, 2011

Do you remember the following 5 cases that cost shareholders, governments and the general public billions of dollars, lost jobs and damaged reputations, along with heavy penalties for the companies involved and prison terms for many of the people involved in these crimes?

  1. AIG fined $1.6 billion for Accounting Fraud and a bid-rigging scheme with Marsh & McLennan Companies (at the time the largest US insurance broker) that authorities say cost shareholders more than $500 million. AIG also had an arrangement with three private entities, governed and controlled by AIG executives that raised concerns regarding compensation and conflict of interest.

    Executives were charged with conspiracy, securities fraud, mail fraud and making false statements to the Securities and Exchange Commission. Investigations also led to the convictions of four General Re Corp. executives for their roles in manipulating AIG’s financial statements.The challenge left for the new CEO was to transform AIG’s secretive culture into a viable business able to play by the rules.

    American International Group, Inc. (AIG) is a leading international insurance organization serving customers in more than 130 countries. AIG companies serve commercial, institutional and individual customers through one of the most extensive worldwide property casualty networks of any insurer. In addition, AIG companies are leading providers of life insurance and retirement services in the United States.
  2. Click to continue »

New Feature: Continuous Controls Monitoring

Wednesday, May 11th, 2011

The GRC world requires so many controls to be implemented that sometimes the total cost of implementing and maintaining those controls may cost more than the risks they intend to mitigate.

Continuous Controls Monitoring (CCM) provides organizations with effective techniques for monitoring and auditing their IT systems, providing insight into the integrity of individual transactions and the overall efficiency of controls.

Click to continue »

easy2comply partners with MagnaSoft of Mexico & launches in Spanish!

Wednesday, May 4th, 2011

In striving to expand easy2comply to meet the requirements of worldwide customers, we identified a growing need among the Spanish-speaking segment for our GRC software solution. We’re now happy to announce that in addition to English, Dutch, French, German, Italian, Polish, and Portuguese, easy2comply is now available in Spanish.

We’re also happy to inform Mexican businesses that need assistance with their Basel II and Solvency II compliance requirements that easy2comply has partnered with MagnaSoft of Mexico. MagnaSoft was founded in 1996 and is a leading IT company focused on providing consulting, services and products in the Governance, Risk Management and Compliance (GRC) areas.  Their expertise is in SOX, ISO 27001, COSO and COBIT, applying tested Quality Strategy Methodologies as Business Process Modeling and Analysis (BPM/A), Business Process Management (BPM) and Balanced Score Card (BSC). Click to continue »

easy2comply’s impressions from the GRC & ERM Conferences

Monday, March 28th, 2011

March has been an action-packed month for easy2comply.
Our teams have participated in – and hopefully met you at – two U.S. conferences. If you attended the GRC Summit or ERM Symposium (co-sponsored by easy2comply) we hope you came away inspired and equipped with the tools you need for successful implementation. For those who weren’t able to attend, here’s our brief report of these innovative events.

Click to continue »

Manage Tasks with easy2comply

Monday, March 7th, 2011

At easy2comply we understand your need to have full Control, Documentation and Management of Tasks functionality built into our software. We take your needs very seriously and we listened to what you want, so we’re happy to announce new features with you in mind.

Our powerful Task Tool helps you effectively manage your requirements through the flexibility of tasks, sub-tasks for related controls and processes, multi modules for control and more. And just like easy2comply’s other features, it’s easy to use: simply add a new task, set the due date, and you’re ready to start managing your tasks. Click to continue »

Fast Track Program to Solvency II Implementation

Sunday, February 27th, 2011

Identifying Operational Risk

Two out of the three pillars of the Solvency II regulation require the identification and assessment of risks across the enterprise.
  • Pillar 1: calculate the MCR (Minimum Capital Requirements) and SCR (Solvency Capital Requirements)
  • Pillar 2: demonstrate that the risk capital calculated provides sufficient coverage for the risks identified.

easy2comply provides smart functionality that divides an organization’s hierarchy into manageable silos to easily define  the set of risks present within the assessment zone, logically assessing those risks, and determining a set of mitigation techniques for managing them.
Click to continue »