As part of your audit follow-up and gap management, you can create your own dashboard.
You can create dashboard blocks for these gaps and report on them with different granularities: All gaps, a gap register, or a group of gaps.
We will create a first section in the dashboard for a global view of compliance with a framework (here ISO 27001-2013). We will build a second section to follow the gaps present in the audit and a third section to track the remediation/compliance restoration plan. Therefore, we will choose dashboard blocks at the register level.
The indicators we can add:
Compliance indicators: radar with declarative, coverage, and measured scores
Overall gap treatment score for the register and ongoing treatment
All gaps created and closed during the month
The number of gaps currently open and closed in the register
Optionally, a block based on the criticality of the gaps
Progress (overall action plan progress)
Status of actions on a curve showing the evolution of actions over time (for example, over the current year)
Status of actions on a diagram, showing the number of each type
If you have the data, we can also add planned and spent costs and efforts
Here is what our dashboard looks like, with two sections:
Section 1: "Compliance with Policy"
Section 2: "Vulnerability Tracking"
Section 3: "Compliance Plan"
We have used two ways to create blocks here:
Simple blocks (such as the block displaying progress) where we click on it and follow the tutorial.
Expert blocks, which allow us to combine the indicators from the action plans for a more comprehensive report. You can refer to this article to understand how to create an expert block.


