With your policy structure in place, you can create the controls that make it actionable. Controls always live under a category or a subcategory of a policy.

1. Add a Control Manually

  1. Navigate to the Policies section.
  2. In the Policy structure tree, hover the category or subcategory that should hold the control and click its add (+) button.
  3. In the drawer, choose Control ("a specific requirement or measure to implement").
  4. Fill in the requested information:
    • Displayed control code: a code is suggested automatically; adjust it if needed.
    • Control name: a clear, concise name.
    • Control description: the objective and requirements of the control (you can complete it later).
  5. Click Add Control.

2. Import from the Control Catalog

Need a standard control instead of writing your own? In the same drawer, choose Add from database to open the Control Catalog:

  • Search by code, name or description, and filter by framework, category and language.
  • Your own custom database controls appear alongside the catalogue entries, marked CUSTOM.
  • Select a control and click Add Control; it is added to the current category or subcategory with its catalogue definition.

Note: the catalogue contents are managed in the Databases module (Controls Database tab), where you can enable languages, override catalogue controls and create custom ones.