IBM OpenPages IT Governance (ITG) workflows

IBM OpenPages® IT Governance includes sample workflows. You can use them as-is or modify them to meet your requirements. The sample workflows can also be used as a template and learning tools for your own workflows.

The sample workflows are enabled in fresh installations.

Vulnerability Review
This automatic workflow tracks the progress of assessing the severity of an identified vulnerability and provides an option for the user to launch the Threat Assessment workflow.
Threat Assessment
This manual workflow can be launched from the Vulnerability Review workflow.
The Threat Assessment workflow tracks the progress of identifying any Threats that might exploit a Vulnerability and assessing the likelihood and impact of the exploitation of the Vulnerability by the identified Threat(s).
IT Waiver
This automatic workflow tracks the request and response for obtaining a waiver whenever the Waiver is categorized as InfoSec Policy, IT Policy, IT Requirement, or IT Control in the Type field. If the request is approved, the Assignee must provide an expiration date for the Waiver. Otherwise, an expiration date of one year from the date of approval is assigned.
IT Waiver Expiration Review
This automatic workflow is launched on a schedule for any Waiver approved from the IT Waiver workflow when the expiration date is less than 30 days from the date the schedule is run. The user that requested approval in the IT Waiver workflow will make a determination whether an extension of the Waiver is needed. If an extension is needed, the Waiver will progress to the Waiver Extension Review Stage where it will either be approved and a new Expiration Date granted or it will be rejected.