LogicGate Services Description

Risk Cloud Use Cases
Standard Use Cases Enterprise Risk Management, Third-Party Risk Management, IT Security Risk, Control Audit Management, Compliance Management, Incident Management, Issues Management, Policy Management, Regulatory Compliance, Internal Audit Management, Procurement & Contract Management, Business Continuity Management, Data Privacy

 

Risk Cloud Platform
Application An Application is a distinct set of rules and logic built in Risk Cloud supporting a singular use case.
Primary User Includes all Secondary User abilities (see below), in addition to the ability to create and manage users, create and manage roles and groups, create standard report views, create and modify workflows, create and modify forms, create and modify fields, create automated reminder rules or other automated jobs, perform bulk actions (import, assign), and create new processes.
Secondary User User that can view and interact with records, view and manage work queues, view and create reports, and view records of previous work.
Limited User User that can view specific records, complete attestations (such as those on Policy records), or view a work queue.
Public User Public Users can receive email notifications and perform work using unique, tokenized links.  Public Users cannot be utilized for Customer’s employees, contingent workers, or other users internal to their organization.
Public Pages Public Pages allow you to create publicly available forms that can be submitted by anyone with the unique link
SCIM User Provisioning Provides access to SCIM 2.0 supported auto-provisioning features that allows integration with identity management systems. Includes support for the following functions: Create, Update, and Deactivate users.
Single Tenancy Provides database infrastructure that is not shared with other tenants.

 

Professional Services & Implementation
Standard Success Includes access to the LogicGate Help Center (help.logicgate.com); core Risk Cloud training content on LogicGate Learning portal;  bi-annual syncs with your LogicGate Customer Success Manager and Relationship Manager to review business outcomes and metrics, as well as get updates on Risk Cloud product offerings; in-app chat support; and updates related to the latest version of Risk Cloud Standards and Regulations Content provided to you via spreadsheet within 60 days of a major release published by the authoritative source.
Premier Success Includes access to the LogicGate Help Center (help.logicgate.com); core Risk Cloud training content on LogicGate Learning portal; quarterly syncs with your LogicGate Customer Success Manager and Relationship Manager to review business outcomes and metrics, as well as get updates on Risk Cloud product offerings; in-app chat support; up to six (6) hours per month of configuration, system administration, content update, or GRC process design and enablement support from the Risk Cloud Consultant team, who can provide expert LogicGate product support; and support with loading the latest version of Risk Cloud Standards and Regulations Content within 60 days of a major release published by the authoritative source, as well as mapping the new version to the “primary control set” (i.e., Secure Controls Framework or HITRUST CSF) to maintain existing control mappings.
Professional Service Bundles Ten (10) hours of access to the LogicGate Professional Services Team, in addition to either of the Success packages listed above. Can be used for additional configuration, system administration, content update, or GRC process design and enablement support; and support with applying updates to existing control mappings for Risk Cloud Standards and Regulations Content
Quick Start Implementation LogicGate’s Quick Start Implementation Option provides up to 15 hours of hands-on configuration support for an official Risk Cloud Application template for one of LogicGate’s Standard Use Cases. Included in the service is:

  • Up to two (2) Application Walkthrough sessions
  • Data import and mapping for up to three (3) workflows (500 record max per workflow)
Standard Implementation LogicGate’s Standard Implementation Option provides up to 40 hours of hands-on configuration support for any of LogicGate’s Standard Use Cases, using an official Risk Cloud Application template or a custom build, within a 100-day period from the Kick-Off Date. Included in the service is:

  • Kickoff and planning to help you meet the 100-day implementation timeline
  • Review of existing documentation to determine process design requirements
  • Up to five (5) Application Walkthrough sessions
  • Data import and mapping for up to three (3) workflows (500 record max per workflow)
  • Sharing of best practices and recommended approaches based on experience
  • Creation of custom forms, fields, and conditional rules
  • Creation of workflow routing and mapping
  • Creation of custom email notifications
  • Configuration of basic reports
  • Setup of user access controls and security to align with your organization
  • Initial user account creation
  • Access for Primary Users to the LogicGate Power User Certification program
  • One (1) live admin training session provided via web conference and recorded
  • Single sign-on implementation support (if applicable)
  • Guidance on data import format and in-app import tool (if applicable)
  • Go-live recommended best practices
Custom Implementation Subject to a required scoping exercise, LogicGate’s Custom Implementation Option provides implementation services for any use case not included in LogicGate's Standard Use Cases and/or any implementation that will require more than 40 hours of Implementation Services. This implementation includes all Standard Implementation service offerings, as well as any additional services scoped and agreed upon within a Statement of Work.
Implementation Scope Each implementation option listed above can be used to cover: (1) the implementation of an application that is one of the Standard Use Cases and not a combination of any two Standard Use Cases; or (2) the implementation of an application that has one clearly defined business owner at your organization and is of a similar scope to a Standard Use Case.

 

Implementation Add-Ons

Project Plan Development & Management LogicGate will collaborate with Customer to provide guidance on key project activities and milestones, along with expected timing based on the Customer’s timeline requirements, if applicable. LogicGate will work with Customer throughout the implementation to track towards the expected timeline and adjust as needed. Includes up to 8 hours of services.
Data Structure Diagram LogicGate will collaborate with Customer to confirm Customer’s overarching vision for the in-scope interconnected workflows and applications to be built in the LogicGate platform. The development of the data structure diagram will be facilitated via [3] [1]-hour long virtual whiteboard sessions, during which the teams will align on the high-level data structures (i.e., workflows) and how they will be related. Includes up to 8 hours of services.
Workflow “Data Dictionaries” LogicGate will collaborate with Customer to understand the key data points required for each data object maintained in LogicGate. LogicGate will create and maintain “data dictionaries” for each data object as part of the implementation. Includes up to 4 hours of services.
Configuration Change Decision Tracker LogicGate will document all key configuration decisions and rationale for the decisions. The tracker will be shared with the Customer and will be continuously updated throughout the Onboarding period. Includes up to 8 hours of services.
Requirements Tracker LogicGate will create and maintain a tracking document of key meetings and activities throughout the Customer’s Onboarding. Additionally, LogicGate will track the key requirements of the build, including the owner of the requirement, key dates related to the requirement, and the overall status.  Includes up to 8 hours of services.
User Acceptance Testing Scripts LogicGate will work with the customer to define the appropriate user acceptance testing scripts for admin and end user testing. Customer is responsible for confirming the scope of the testing. Includes up to 4 hours of services.
Advanced Admin User Training LogicGate will collaborate with Customer to identify advanced admin training topics to cover. LogicGate will lead live virtual admin training and provide the recorded sessions to the Customer. Includes up to 4 hours of services.
End User Training   LogicGate will collaborate with Customer to identify key topics for the end user training. LogicGate will develop a training based on the agreed upon topics and conduct the virtual training. The Customer is responsible for gathering the correct end users and setting a time for the training. LogicGate will provide a recording for the session after the training. Includes up to 8 hours of services.
Custom Instructional Videos LogicGate will collaborate with Customer to create an outline for the instructional video. Customer is responsible for providing feedback on the script and approving it. LogicGate is responsible for recording the video based on the agreed upon script. The video will be provided to Customer as an MP4 file. Includes up to 8 hours of services.
Custom Admin Maintenance Manual LogicGate will document how the Application was created and provide steps on how to maintain and edit the Application going forward (step by step guidance may contain links to external help articles or training material). Includes up to 8 hours of services.
Workflow Narrative LogicGate will document all of the Workflows built, how they are connected and the objects each Workflow is capturing. The Workflow Narrative will be provided to the Customer at the end of the onboarding period. Includes up to 4 hours of services.
Access Matrix LogicGate will provide documentation of all the applicable Roles and User Groups. Access Matrix will define Role Module and Step Entitlement along with which users are granted access to each Role. Includes up to 4 hours of services.
Jobs Matrix LogicGate will provide documentation of all the applicable Jobs for the Application built. The Job Matrix will include information like Job Type, Workflow, Steps, Recipients and Conditions. Includes up to 4 hours of services. 

 

Integrations & Content
Ascent Regulators Includes obligation, rule, and metadata for a given Ascent regulator integrated into the “Regulatory Compliance Powered by Ascent” application within the Risk Cloud.
Workato Middleware platform utilized for Risk Cloud Connect integrations. Customer’s use of Workato Services is subject to Workato’s Terms of Use and Workato’s Privacy Policy.
Core Integrations Bundle Includes native Risk Cloud integrations (Jira, Slack) and access to the RESTful API
Risk Cloud Connect - Out of the Box Connector Pre-built connectors (e.g., Security Scorecard, ServiceNow, DocuSign, Salesforce) for common GRC use cases that are specific in the connectors scope and use case
Risk Cloud Connect - Managed Connector Custom-built and maintained connections by LogicGate’s integrations services team to connect to common SaaS platforms (e.g., Formstack, Workday, Qualys, Tenable, Oracle NetSuite, Microsoft Teams).
Integration Service Bundles Ten (10) hours of access to the LogicGate Integration Services Team, in addition to the Risk Cloud Connect - Managed above. Will be used to build out the integration to the exact specifications required by the customer

  v.2.08 Last Updated: 02/23/21