下载PDF
NAVEX > 实例探究 > Mobile Messaging Company Outgrows Manual Regulatory Compliance
NAVEX Logo

Mobile Messaging Company Outgrows Manual Regulatory Compliance

技术
  • 应用基础设施与中间件 - 数据交换与集成
适用行业
  • 电信
适用功能
  • 商业运营
用例
  • 监管合规监控
服务
  • 系统集成
挑战
A mobile messaging company was in hyper-growth mode but needed to mature its compliance program to keep pace with a growing list of regulations and B2B customer demands. The company had to comply with 173 contracts, 254 regulatory mandates, and 9,700 contract demands. The company’s startup culture made things harder, because it thrived on tribal knowledge, undocumented processes, and a shoot-from-the-hip management style. While that culture could thrive in a small startup environment with few compliance mandates, the company had become a subsidiary of a publicly traded company and counted four of the top 10 global brands as customers. Meeting even basic business requirements was becoming impossible to manage using manual processes like spreadsheets.
关于客户
The customer is a major mobile messaging company that was in a hyper-growth phase. The company had become a subsidiary of a publicly traded company and had four of the top 10 global brands as its customers. The company had to comply with 173 contracts, 254 regulatory mandates, and 9,700 contract demands. The company's culture was based on tribal knowledge, undocumented processes, and a shoot-from-the-hip management style, which was becoming increasingly difficult to manage as the company grew and the number of compliance mandates increased.
解决方案
The mobile messaging company selected NAVEX’s governance, risk management, compliance (GRC) platform, NAVEX IRM, for its capabilities in integrated risk management (IRM). NAVEX IRM enables organizations to gain a comprehensive view of their business and operations from a risk perspective— connecting individual risk disciplines and managing them in one centralized program. By using NAVEX IRM, the company’s CISO was able to assemble ISO/IEC 27001 controls, NIST SP 80053 controls and a custom NIST control family to form the company’s proprietary controls catalog. The company was also able to map controls to compliance mandates. The CISO accesses this feature when business requirements differ; for example, if one customer has a contract requirement while another customer requires the company to follow ISO, it’s all documented in NAVEX IRM.
运营影响
  • Managed requirements of 173 contracts, 254 compliance mandates, and 9,700 contract demands with one technology solution: NAVEX IRM
  • One stop for all things related to information security and compliance
  • Built credibility by mapping authority documents and regulation citations to controls
数量效益
  • Saved the time of 2 FT employees, using streamlined compliance processes and automation

相关案例.

联系我们

欢迎与我们交流!

* Required
* Required
* Required
* Invalid email address
提交此表单,即表示您同意 IoT ONE 可以与您联系并分享洞察和营销信息。
不,谢谢,我不想收到来自 IoT ONE 的任何营销电子邮件。
提交

Thank you for your message!
We will contact you soon.