Legal & Compliance Dashboard

Comprehensive governance, risk management, and compliance oversight

92.8%
Overall Compliance Score
4
Active Frameworks
3
Pending Actions
2
Active Violations
GDPR
94.7%

Last Assessment: January 15, 2024

Status: Compliant

SOX
91.3%

Last Assessment: January 10, 2024

Status: Compliant

HIPAA
88.5%

Last Assessment: December 20, 2023

Status: Needs Attention

ISO 27001
96.2%

Last Assessment: January 5, 2024

Status: Compliant

Pending Actions

Data Subject Access Request
Due: January 20, 2024 • Request ID: DSR-2024-003
High Priority
Security Policy Review
Due: January 25, 2024 • Password Security Policy
Medium Priority
Vulnerability Assessment
Due: January 18, 2024 • Quarterly Assessment
High Priority

Compliance Frameworks

Framework Version Compliance Score Last Assessment Status Actions
GDPR
General Data Protection Regulation
2018 94.7% Jan 15, 2024 Compliant
SOX
Sarbanes-Oxley Act
2002 91.3% Jan 10, 2024 Compliant
HIPAA
Health Insurance Portability Act
1996/2013 88.5% Dec 20, 2023 Needs Attention
ISO 27001
Information Security Management
2022 96.2% Jan 5, 2024 Compliant

Security Policies

Policy Name Type Enforcement Level Compliance Rate Violations Review Date Status Actions
Password Security Policy Password Mandatory 94.2% 3 Jul 1, 2024 Active
Data Encryption Policy Data Encryption Critical 98.7% 1 Jun 1, 2024 Active
Access Control Policy Access Control Mandatory 91.5% 7 Sep 1, 2024 Active

Security Incidents

Incident ID Type Severity Title Status Discovery Date Resolution Date Actions
INC-2024-001 Unauthorized Access High Failed Login from Suspicious IP Resolved Jan 10, 2024 Jan 10, 2024
INC-2024-002 Malware Critical Malware Detection on Workstation Investigating Jan 12, 2024 -
INC-2024-003 Data Breach Medium Accidental Email Exposure Resolved Jan 8, 2024 Jan 8, 2024

Risk Assessments

15
Total Risks
2
High Risk
5
Medium Risk
8
Low Risk
Risk Category Description Inherent Risk Residual Risk Risk Level Mitigation Status Owner Actions
Operational Server hardware failure 8.5 3.2 Medium Implemented IT Operations
Financial Payment processing disruption 9.1 4.5 Medium In Progress Finance

Data Subject Rights Requests

GDPR Compliance: All data subject requests must be processed within 30 days of receipt. High-priority requests should be handled within 72 hours.
Request ID Type Requester Request Date Due Date Status Actions
DSR-2024-001 Data Access john.doe@example.com Jan 10, 2024 Feb 9, 2024 Completed
DSR-2024-002 Data Erasure jane.smith@example.com Jan 12, 2024 Feb 11, 2024 Processing
DSR-2024-003 Data Portability bob.wilson@example.com Jan 14, 2024 Feb 13, 2024 Received

Audit Trail

Timestamp Event Type User ID Resource Action Outcome IP Address Details
Jan 15, 10:30 AM Login 101 Web Portal Authentication Success 192.168.1.100
Jan 15, 10:25 AM Data Access 102 Device_001 View Success 192.168.1.101
Jan 15, 9:45 AM Configuration Change 103 Security Policy Update Success 192.168.1.102