下载PDF
NAVEX > 实例探究 > Major Consumer Products Leasing Firm Streamlines Incident Management
NAVEX Logo

Major Consumer Products Leasing Firm Streamlines Incident Management

技术
  • 应用基础设施与中间件 - 数据交换与集成
适用行业
  • 消费品
适用功能
  • 商业运营
用例
  • 监管合规监控
  • 远程资产管理
服务
  • 系统集成
挑战
The company faced challenges related to compliance requirements and incident management. The existing solution was reliable for gathering information on incidents, but it lacked steps for managing information toward a resolution in a secure manner. The company also faced hurdles in controlling and restricting access to information around incidents that involved HR and the Healthcare Information Portability and Accountability Act (HIPAA). Additionally, the company’s use of vendors pointed to the need for regular assessments and a defined process for managing vendor incidents. The company sought a more secure and efficient way to manage incidents associated with HR, vendors and IT, as well as a smarter approach to IT risks and vulnerabilities.
关于客户
The customer is a major consumer products leasing firm. The company is a market leader in lease ownership of consumer products. The company faced both compliance requirements and issues dealing with incidents. The company couldn’t efficiently assign tasks related to incidents. The company’s solution was reliable for gathering information on incidents, but it lacked steps for managing information toward a resolution in a secure manner. Another hurdle was controlling and restricting access to information around incidents that involved HR and, by extension, the Healthcare Information Portability and Accountability Act (HIPAA). Additionally, the company’s use of vendors pointed to the need for regular assessments and a defined process for managing vendor incidents.
解决方案
The company chose NAVEX’s governance, risk management, and compliance (GRC) platform, NAVEX IRM, for its capabilities in integrated risk management (IRM). NAVEX IRM enables organizations to gain a comprehensive view of their business and operations from a risk perspective—connecting individual risk disciplines and managing them in one centralized program. The company’s Information Assurance team used NAVEX IRM for incident management, both in terms of securing data and integrating data for processing. They leveraged the solution’s roles and permissions feature to restrict data access to only those who needed it. Data that involved HR with HIPAA implications was also easier to manage and protect, using NAVEX IRM which links together data collected, controls, compliance mandates, contract requirements and more. Data stored and managed this way requires less effort by the company to prove compliance and manage risk.
运营影响
  • The company’s incident response has been transformed by using NAVEX IRM.
  • Issues with data security, privacy and HIPAA compliance quickly became a thing of the past.
  • Better data governance helped the Information Assurance team get buy-in from legal, associate resources, IT and upper management.

相关案例.

联系我们

欢迎与我们交流!

* Required
* Required
* Required
* Invalid email address
提交此表单,即表示您同意 IoT ONE 可以与您联系并分享洞察和营销信息。
不,谢谢,我不想收到来自 IoT ONE 的任何营销电子邮件。
提交

Thank you for your message!
We will contact you soon.