Welcome to version 16.1.0! This update brings significant improvements across the platform, including a more intuitive navigation experience, brand-new compliance frameworks, enhanced risk scenario tracking, and a host of stability and performance upgrades.
Here is a summary of what is new, changed, and fixed in this release.
🌟 Highlights & Key Features
Unified Navigation Experience: We have redesigned the left-hand navigation menu. Instead of navigating separate menus for each service, you can now access all platform services from a single, unified nested menu.
New Compliance Frameworks: We are thrilled to announce out-of-the-box support for NIST SP 800-53 Rev 5 and NERC CIP controls.
Automated Welcome Emails: The platform now supports automated welcome emails for new users, ensuring a smoother onboarding experience.
Enhanced Risk Scenarios: We've overhauled how Threat and Method data interacts within Risk Scenarios, providing much deeper tracking for Protective and DCR (Detective, Corrective, Responsive) controls.
🛠️ Module Updates - Platform & Core
Data Export: Added the ability to export generic CSV files across various platform entities.
Governance & Compliance
Organizationally Defined Parameters (ODPs): Expanded ODP capabilities significantly. You can now define, list, and filter ODPs with new configuration options, including descriptions, types, and calculation flags.
Framework Management: Users can now create and upload custom frameworks.
Compliance Tracking: Improved the interface for viewing compliance requirements. You can now easily pull summaries of controls and view specific asset dependencies tied to your compliance requirements.
eLearning
Dynamic Status Updates: Training statuses will now automatically update to "In Progress" the moment a user begins answering questions.
Clean Deletion: Enhanced the module deletion process to ensure all associated data is cleanly removed from the system.
Profile Management
Certifications: Added a new suite of tools to create, view, and list user Certifications.
Workforce Directory: Added a new Workforce list feature, allowing managers to easily pull and view directories of user profiles.
🐛 Bug Fixes & Stability
Caching: Improved memory caching logic to prevent data staleness and ensure you are always seeing the most up-to-date information.
Built on the Open FAIR™ model, K2 GRC's Risk Service helps organizations quantify cyber risk in financial terms, enabling more informed business investment and risk management decisions.
Understand the key differences between NIST SP 800-171 Revision 2 and Revision 3 with this comprehensive migration guide and crosswalk. Learn how security requirements, assessment objectives, and DoD Organization-Defined Parameters (ODPs) align to help your organization prepare for future CMMC and FAR CUI compliance.