NAVEX > 实例探究 > Mobile Messaging Company Outgrows Manual Regulatory Compliance

Mobile Messaging Company Outgrows Manual Regulatory Compliance

NAVEX Logo
公司规模
1,000+
地区
  • America
国家
  • United States
产品
  • NAVEX IRM
技术栈
  • Integrated Risk Management
实施规模
  • Enterprise-wide Deployment
影响指标
  • Digital Expertise
  • Productivity Improvements
技术
  • 应用基础设施与中间件 - 数据交换与集成
适用行业
  • 电信
适用功能
  • 商业运营
用例
  • 监管合规监控
服务
  • 系统集成
关于客户
The customer is a major mobile messaging company that was in a hyper-growth phase. The company had become a subsidiary of a publicly traded company and had four of the top 10 global brands as its customers. The company had to comply with 173 contracts, 254 regulatory mandates, and 9,700 contract demands. The company's culture was based on tribal knowledge, undocumented processes, and a shoot-from-the-hip management style, which was becoming increasingly difficult to manage as the company grew and the number of compliance mandates increased.
挑战
A mobile messaging company was in hyper-growth mode but needed to mature its compliance program to keep pace with a growing list of regulations and B2B customer demands. The company had to comply with 173 contracts, 254 regulatory mandates, and 9,700 contract demands. The company’s startup culture made things harder, because it thrived on tribal knowledge, undocumented processes, and a shoot-from-the-hip management style. While that culture could thrive in a small startup environment with few compliance mandates, the company had become a subsidiary of a publicly traded company and counted four of the top 10 global brands as customers. Meeting even basic business requirements was becoming impossible to manage using manual processes like spreadsheets.
解决方案
The mobile messaging company selected NAVEX’s governance, risk management, compliance (GRC) platform, NAVEX IRM, for its capabilities in integrated risk management (IRM). NAVEX IRM enables organizations to gain a comprehensive view of their business and operations from a risk perspective— connecting individual risk disciplines and managing them in one centralized program. By using NAVEX IRM, the company’s CISO was able to assemble ISO/IEC 27001 controls, NIST SP 80053 controls and a custom NIST control family to form the company’s proprietary controls catalog. The company was also able to map controls to compliance mandates. The CISO accesses this feature when business requirements differ; for example, if one customer has a contract requirement while another customer requires the company to follow ISO, it’s all documented in NAVEX IRM.
运营影响
  • Managed requirements of 173 contracts, 254 compliance mandates, and 9,700 contract demands with one technology solution: NAVEX IRM
  • One stop for all things related to information security and compliance
  • Built credibility by mapping authority documents and regulation citations to controls
  • CISO used reports and data generated in NAVEX IRM to support recommendations to management
数量效益
  • Saved the time of 2 FT employees, using streamlined compliance processes and automation

Case Study missing?

Start adding your own!

Register with your work email and create a new case study profile for your business.

Add New Record

相关案例.

联系我们

欢迎与我们交流!
* Required
* Required
* Required
* Invalid email address
提交此表单,即表示您同意 IoT ONE 可以与您联系并分享洞察和营销信息。
不,谢谢,我不想收到来自 IoT ONE 的任何营销电子邮件。
提交

感谢您的信息!
我们会很快与你取得联系。