With your policy structure in place, you can create the controls that make it actionable. Controls always live under a category or a subcategory of a policy.
1. Add a Control Manually
- Navigate to the Policies section.
- In the Policy structure tree, hover the category or subcategory that should hold the control and click its add (+) button.
- In the drawer, choose Control ("a specific requirement or measure to implement").
- Fill in the requested information:
- Displayed control code: a code is suggested automatically; adjust it if needed.
- Control name: a clear, concise name.
- Control description: the objective and requirements of the control (you can complete it later).
- Click Add Control.
2. Import from the Control Catalog
Need a standard control instead of writing your own? In the same drawer, choose Add from database to open the Control Catalog:
- Search by code, name or description, and filter by framework, category and language.
- Your own custom database controls appear alongside the catalogue entries, marked CUSTOM.
- Select a control and click Add Control; it is added to the current category or subcategory with its catalogue definition.
Note: the catalogue contents are managed in the Databases module (Controls Database tab), where you can enable languages, override catalogue controls and create custom ones.