PROGRAM DETAILS

CTAC POC Onboarding & Deployments

Welcome to your Neverfail Continuous Controls CTAC POC! In order to proceed, you will need to start the initial onboarding process. This will require a few onboarding tasks to be completed by your team.

The CTAC POC consists of 4 core milestones to clear in order to launch into an “active state”.

Workflow IQ Onboarding

POC Infrastructure Deployment

Bot Automation Deployment

PowerBI Deployment

Workflow IQ Onboarding

Teams and task collaboration setup

During the onboarding meeting, you will be provided access to the WIQ UI, allowing for the configuration of your evidence storage, teams, and features for each team. At minimum, at least one (1) team will need to be configured for a Task Feature, Approval Feature, Storage Feature, team lead name, and team lead email.

  • test
  • test
  • test

POC Infrastructure Deployment

Azure and AWS functions provisioning

Once the WIQ and Auditee onboarding has completed, you will need to provide Neverfail with the Github identity (Github profile email address). This will enable your access to the Terraform Files via a Github Repo, which precisely describe the set of virtual assets in AWS and Azure.

Bot Automation Deployment

Evidence collection, testing, and remediation

AWS or Azure test suite functions are made available as binary files in an Artifactory repository Neverfail provisioned. Committing and pushing will trigger Github Actions, which will deploy each function to AWS Lambda or Azure Function App. Deployed functions will perform a callback, notifying Neverfail about it being online, which will trigger CTAC tests to begin. Azure and/or AWS test suites runs will default to a daily frequency.

PowerBI Deployment

POC dashboard and user experience

After the test suites are created and configured to run on a daily schedule, your team lead will be provided access to the test run data via PowerBI dashboards. You can make changes to tested components and see exactly how those changes affect CTAC test results via the BI dashboards. In their AWS or Azure portals, they can also access Secrets, Key Vaults, bot configuration files, function logs, evidence, and evidence chain of custody records in their evidence repository.
TOP