one
AUTOMATED CONTROL COMPLIANCE EVIDENCE MANAGER USING A SECURE DISTRIBUTED LEDGER

Last updated:

Abstract:

The exemplary embodiments provide an automated control compliance evidence manager that is responsible for gathering evidence of compliance with controls. The control compliance evidence manager may operate on an ongoing basis. In some exemplary embodiments, the evidence is gathered and available for review in real time or near real time. The steps for gathering the compliance evidence may be specified at the time a control is established so that there is consistency in what is gathered and how the evidence is gathered. A user may be required to provide an itemization of what evidence is to be gathered and where. The evidence may be stored in an immutable fashion. In some exemplary embodiments, the evidence may be cryptographically hashed or otherwise encrypted and referenced by a secure distributed ledger, like a blockchain. The distributed ledger may be visible to concerned parties.

Status:
Application
Type:

Utility

Filling date:

20 Nov 2020

Issue date:

26 May 2022