Welcome to version 17.0.0! This major release introduces powerful new Risk Scenario Simulations, enhanced training controls with Module Builder Steps, and a variety of performance upgrades and bug fixes to make your experience smoother and faster.
🌟 Highlights & Key Features
Risk Scenario Simulations: You can now run detailed simulations against your Risk Scenarios to better understand and prepare for potential threats.
Module Builder Steps for Training: Ensure your workforce completes their training at the right pace. The new "Steps" concept in Module Builder allows you to guide users through training modules step-by-step.
Enhanced Compliance Visibility: The Compliance Framework page now visually displays Tracked Requirements in easy-to-read charts.
🛠️ Service Updates
Risk & Compliance
SSP Reports: Cleaned up the System Security Plan (SSP) Report display so it now shows a single Control Origination.
Control Categories: Updated the Control Category classifications to align with industry standards (Govern, Detect, Respond, Recover, Protect, Identify).
Workforce Enhancements: "Responsible Party" is now a required field on Workforce profiles. We have also added a new Active/Inactive status toggle for better workforce management.
🐛 Bug Fixes & Stability
Performance: Significantly shortened the load times for Tasks!
Session Timeouts: Fixed a highly requested bug where the automatic timeout would incorrectly kick users out after exactly one hour, regardless of whether they were actively using the platform.
Plan of Actions (POAs): Resolved an issue that was preventing POAs from being created.
UI Inconsistencies: Fixed bugs related to inconsistent PDF uploads and corrected the display columns (Responsible Party and Framework) on the Requirement Page.
K2 GRC Version 17.0.0 introduces powerful new capabilities to help organizations strengthen risk management, improve compliance visibility, and enhance workforce training.
Compare ISO 9001:2015 vs ISO 27001:2022 — understand the key differences in quality management and information security, who should pursue each certification, and how to integrate both standards.