Menü aufrufen
Toggle preferences menu
Persönliches Menü aufrufen
Nicht angemeldet
Ihre IP-Adresse wird öffentlich sichtbar sein, wenn Sie Änderungen vornehmen.

Prüfergebnisse/en: Unterschied zwischen den Versionen

Aus HITGuard User Guide
Isan (Diskussion | Beiträge)
Die Seite wurde neu angelegt: „== <span id="Prüfergebnisse einpflegen"></span>Enter/answer review results==“
Isan (Diskussion | Beiträge)
Keine Bearbeitungszusammenfassung
 
(27 dazwischenliegende Versionen von 3 Benutzern werden nicht angezeigt)
Zeile 1: Zeile 1:


== <span id="Prüfergebnisse einpflegen"></span>Enter/answer review results==
<span id="Prüfergebnisse_einpflegen/neu_beantworten"></span>
== <span id="Prüfergebnisse einpflegen"></span>Add/answer new review results==


Um ein neues Prüfergebnis einzupflegen muss in der Detailansicht des Prüfobjektes auf "Plus" geklickt werden. Weitere Prüfergebnisse können auch über das "Plus" bei den bereits existierenden Prüfergebnissen hinzugefügt werden.  
To add a new review result, click on the "Plus" button in the overview of the review object. Further review results can added with the "Plus" in addition to any existing review results. Via the radio buttons it can be decided whether a question or an information gathering should be added.


Die Prüfergebnisse können im Nachhinein auch noch in der Reihenfolge angepasst werden. Dafür in der Übersicht das gewünschte Prüfergebnis auswählen und mithilfe der Pfeile rechts vom "Plus" an den gewünschten Platz schieben.  
The order of the review results can also be added after the fact. For this, simply select the respective review results and adjust its position using the arrows to the right of the "Plus".  


Existieren bereits Prüfergebnisse, da es sich um eine Neubewertung handelt, können diese neu beantworten werden, indem auf das gewünschte Prüfergebnis geklickt wird oder durch klicken auf "Weiter" dorthin navigiert wird.  
If review results already exist and the current assessment is a revaluation, they can be assessed again by simply clicking on the review result or navigating forward with "Next".  


[[Datei:Prüfergebnis einpflegen Schritt 3.1 Prüfergebnis beantworten.png|left|thumb|904px]]
[[Datei:Prüfergebnis einpflegen Schritt 3.1 Prüfergebnis beantworten.png|left|thumb|901px|Review question for the review object]]
[[Datei:PO_Info.png|left|thumb|901px|Information gathering for the review object]]
<br clear=all>
<br clear=all>


<u>Bezeichnung:</u>
<u>Name:</u>
* Die Bezeichnung des Prüfergebnisses sollte kurz und bündig erklären was geprüft wurde.
* The name of the review result should concisely state what is being reviewed.


<u>Kurzbeschreibung:</u>
<u>Short description:</u>
* Hier sollten Sie genauer beschreiben was geprüft wurde.
* Here, you should give a little more detail about what is being reviewed.


<u>Bewertung:</u>
<u>Evaluation:</u>
* Hier wählen Sie aus wie die Prüfung bewertet wurde. Dies können Sie mit Ja, Nein, Teilweise oder einem Reifegrad beurteilen.
* Here, choose how the review was evaluated. This can be done with Yes/No/Partly or with a score.
* Handelt es sich um eine Neubewertung sehen Sie rechts neben diesem Feld wie dieses Ergebnis das letzte Mal bewertet wurde. Durch Klicken auf diese Beantwortung öffnet sich die Antworthistorie des Prüfergebnisses in welcher erkenntlich wird wie die Prüffrage bei jeder Neubewertung beantwortet wurde sowie ob Evidenzen dafür hinterlegt wurden.  
* If you are doing a revaluation, you can see the previous assessment to the right of this section. Clicking on the previous answer opens the review result's answer history, which shows the answer from every revaluation as well as any document evidences.  


<u>Feststellungsart:</u>
<u>Determination type:</u>
* Diese Option steht nur zur Verfügung, wenn im aktuellen Managementsystem das [[Special:MyLanguage/Managementsysteme#general_settings|Auditmanagement Add-on]] aktiviert ist und unter [[Special:MyLanguage/Auditmanagement_Einstellungen|"Auditmanagement Einstellungen"]] die entsprechende Option aktiviert ist.
* This option is only available if the [[Special:MyLanguage/Managementsysteme#general_settings|audit management add-on]] is activated in the current management system and the respective option was activated under [[Special:MyLanguage/Auditmanagement_Einstellungen|"Audit management Settings"]].


<u>Bewertungserklärung:</u>
<u>Justification:</u>
* Hier geben Sie an wieso die Prüfung so bewertet wurde.
* Here, explain why the review was evaluated the way it was.


<u>Norm-Mapping:</u>
<u>Norm mapping:</u>
* Hier besteht die Möglichkeit die Prüfung auf eine Norm zu mappen.
* Here, it's possible to map the review to a norm.


<u>Abklärungsbedarf:</u>
<u>Clarification needed:</u>
* Es muss noch etwas geklärt werden bevor das Prüfergebnis bewertet werden kann.
* Something needs to be clarified before the review result can be assessed.
* Diese Prüfergebnisse finden Sie im Anschluss unter [[Schwachstellen#Abkl.C3.A4rungsbedarf| "Risikomanagement Schwachstellen Abklärungsbedarf"]].
* These review results can later be found under [[Schwachstellen#Abkl.C3.A4rungsbedarf| "Risk management Vulnerabilities Clarification needed"]].


<u>Schutzziele & Gewichtungen:</u>
<u>Protection targets & weightings:</u>
* Hier können Sie dem Prüfergebnis gewichtete Schutzziele zuweisen, welche zeigen wie ein Schutzziel gefährdet ist sollte die das Prüfergebnis negativ sein.
* Here, you can assign protection targets to the review result, which show how a protection target is vulnerable if the review result is negative.


<u>Evidenzen:</u>
<u>Evidence:</u>
* Ebenso besteht die Möglichkeit Evidenzen für die Bewertung zu hinterlegen.
* It is also possible to upload evidences for the evaluation.


<u>Maßnahme/Kontrolle hinzufügen:</u>
<u>Add measure/control:</u>


:Sie können hier Maßnahmen und/oder Kontrollen mit diesem Prüfergebnis verknüpfen.<br><br>Klicken Sie:<ul><li><b>Bestehende Maßnahme verknüpfen</b>, wenn Sie eine bereits existierende Maßnahme verknüpfen möchten.</li><li><b>Neue Maßnahme erstellen</b>, falls Sie hierzu eine neue Maßnahme erstellen möchten.</li><li><b>Bestehende Kontrolle verknüpfen</b>, wenn Sie eine bereits existierende Kontrolle verknüpfen möchten.</li><li><b>Neue Kontrolle erstellen</b>, falls Sie hierzu eine neue Kontrolle erstellen möchten.</li></ul>
Click the respective button to open an overview. The overview lists all existing measures/controls you can link with the review question. Using the "plus" button, you can also create new measures/controls and link them.
[[Datei:Maßnahmenmodal.png|left|thumb|900px|Example measure list]]<br clear=all>
{| class="wikitable"
! colspan="2" | <b>Measures/controls</b>
|-
!Existing
|All existing measures/controls of the management system, sorted by their relevance for the current review question. The sorting order is described further down in this table. Measures/controls can be assigned one by one or in multiples. Measures/controls that have already been linked with the current review question are no longer shown in the list.
|-
! colspan="2" | <b>Checkboxes</b>
|-
!Linked standards/norms
|Shows only existing measures/controls that are linked via their norm-mapping to the same standard/norm chapters as the review question, as well as any parent chapters.
|-
!Related standards/norms
|Shows only existing measures/controls whose norm-mapping does not contain the same standard/norm chapters as the review question, but instead contains chapters that in turn reference the chapters of the review question (incoming and outgoing mappings between standards/norms). Parent chapters are not considered here.
|-
!Recently used
|Changes the order of the measure/controls as follows:<br>1. measures/controls created from templates<br>2. existing measures/controls, in descending order by the date of their most recent assignment
|-
! colspan="2" | <b>Relationships</b>
|-
| colspan="2" | This column explains the relationships of the listed measures/controls using badges. Explanations of the individual badges are given in tooltip. These can be displayed by hovering over a badge with the mouse. It is possible to search in this column, e.g. for standard/norm chapters mentioned in a badge.
|-
!Blue number
|Shows in how many reviews the measure/control has been linked with review questions or review results.
|-
!Green text
|For measures/controls created on the basis of templates from a knowledge base, this shows the name of the template. Additionally, the badge's tooltip shows the knowledge base and its version.
|-
!Purple text
|Shows onto which chapters (standard, numbering, and name) of a standard or norm a measure/control is mapped.
|-
!Pink text
|Shows the further, indirect mappings (standard, numbering, and name) of a measure/control.
|-
! colspan="2" | <b>Sorting order</b>
|-
| colspan="2" | For free review results, you see all existing measures/controls sorted by their relevance: those that have already been assigned to reviews multiple times; those that map onto the review question´s norm chapter; those that indirectly map the review question's norm chapter; all remaining measures/controls in alphabetical order.
|-
|}


<u>Antworthistorie:</u>
<u>Answer history:</u>
*Handelt es sich um eine Neubewertung, wird angezeigt, wie dieses Prüfergebnis zuvor beantwortet wurde. Klickt man auf diese Beantwortung, öffnet sich ein Dialog der die Beantwortungshistorie zeigt.
* If you are doing a revaluation, this shows how the review result was assessed previously. Clicking on the previous answer opens a dialog that shows the answer history. [[Datei:Abweichungsanalyse Antworthistorie.PNG|left|thumb|900px|Answer history]]
[[Datei:Abweichungsanalyse Antworthistorie.PNG|left|thumb|900px|Antworthistorie]]
<br clear=all>
<br clear=all>

Aktuelle Version vom 1. August 2024, 13:25 Uhr

Add/answer new review results

To add a new review result, click on the "Plus" button in the overview of the review object. Further review results can added with the "Plus" in addition to any existing review results. Via the radio buttons it can be decided whether a question or an information gathering should be added.

The order of the review results can also be added after the fact. For this, simply select the respective review results and adjust its position using the arrows to the right of the "Plus".

If review results already exist and the current assessment is a revaluation, they can be assessed again by simply clicking on the review result or navigating forward with "Next".

Review question for the review object
Information gathering for the review object


Name:

  • The name of the review result should concisely state what is being reviewed.

Short description:

  • Here, you should give a little more detail about what is being reviewed.

Evaluation:

  • Here, choose how the review was evaluated. This can be done with Yes/No/Partly or with a score.
  • If you are doing a revaluation, you can see the previous assessment to the right of this section. Clicking on the previous answer opens the review result's answer history, which shows the answer from every revaluation as well as any document evidences.

Determination type:

Justification:

  • Here, explain why the review was evaluated the way it was.

Norm mapping:

  • Here, it's possible to map the review to a norm.

Clarification needed:

Protection targets & weightings:

  • Here, you can assign protection targets to the review result, which show how a protection target is vulnerable if the review result is negative.

Evidence:

  • It is also possible to upload evidences for the evaluation.

Add measure/control:

Click the respective button to open an overview. The overview lists all existing measures/controls you can link with the review question. Using the "plus" button, you can also create new measures/controls and link them.

Example measure list


Measures/controls
Existing All existing measures/controls of the management system, sorted by their relevance for the current review question. The sorting order is described further down in this table. Measures/controls can be assigned one by one or in multiples. Measures/controls that have already been linked with the current review question are no longer shown in the list.
Checkboxes
Linked standards/norms Shows only existing measures/controls that are linked via their norm-mapping to the same standard/norm chapters as the review question, as well as any parent chapters.
Related standards/norms Shows only existing measures/controls whose norm-mapping does not contain the same standard/norm chapters as the review question, but instead contains chapters that in turn reference the chapters of the review question (incoming and outgoing mappings between standards/norms). Parent chapters are not considered here.
Recently used Changes the order of the measure/controls as follows:
1. measures/controls created from templates
2. existing measures/controls, in descending order by the date of their most recent assignment
Relationships
This column explains the relationships of the listed measures/controls using badges. Explanations of the individual badges are given in tooltip. These can be displayed by hovering over a badge with the mouse. It is possible to search in this column, e.g. for standard/norm chapters mentioned in a badge.
Blue number Shows in how many reviews the measure/control has been linked with review questions or review results.
Green text For measures/controls created on the basis of templates from a knowledge base, this shows the name of the template. Additionally, the badge's tooltip shows the knowledge base and its version.
Purple text Shows onto which chapters (standard, numbering, and name) of a standard or norm a measure/control is mapped.
Pink text Shows the further, indirect mappings (standard, numbering, and name) of a measure/control.
Sorting order
For free review results, you see all existing measures/controls sorted by their relevance: those that have already been assigned to reviews multiple times; those that map onto the review question´s norm chapter; those that indirectly map the review question's norm chapter; all remaining measures/controls in alphabetical order.

Answer history:

  • If you are doing a revaluation, this shows how the review result was assessed previously. Clicking on the previous answer opens a dialog that shows the answer history.
    Answer history


Inhaltsverzeichnis