“We need a regulatory engagement management system that is capable of being used by key people in compliance and quite widely in our counterpart functions like finance, risk, and legal, but also actually in the business – either as an information delivery tool, or as a way to share information back to compliance. We also need to create a central repository of what’s going on with regulators – which we can’t do with our current technology limitations. That really impairs the efficiency of what we do, as well as the organization’s ability to see what’s going on in the whole piece.”
"We selected the MetricStream solution for its ability to provide powerful workflows and key metrics around the audits function.More importantly, it will help us automate CBO's risk-based audits and providerisk assessment methodologies which,in turn, will enable us to enhance the effectiveness and efficiency of CBO's existing risk-based audit infrastructure. The solution will also help build a comprehensive compliance framework for the Central Bank of Oman by providing the capability to integrate several regulatory requirements and risk management initiatives."
“MetricStream provided us with state-of-the-art enterprise-wide loss management tool that captured losses, and provided a remediation structure for reassessing risks and controls, compliance policy reviews, and business process changes. We are particularly pleased with the transparency of records, and the solution’s ability to determine uptothe-minute status of all issues and actions. Implementing the MetricStream solution is a positive step toward our goal of continually increasing workplace productivity.”
"One of the challenges that we face is to understand, communicate, and take action on the many regulatory changes that occur across programs and product lines. The MetricStream GRC tool will help us standardize and streamline processes to manage regulatory change effectively. It will also help ensure that regulatory change is consistently executed and delivered throughout the organization.”
“Bring the Business along: Technology can be implemented in short period of time but it needs to be accepted by and integrated to the business.”
“The MetricStream professional services organization enabled us to go live with the document management solution in a very smooth manner. We are very happy with our choice of MetricStream and look forward to deploying their CAPA and OOS applications as well to continue to automate our cGMP processes and significantly improve our operational efficiency.”
“We continue to be impressed with the richness of MetricStream’s SOX solution and their ability to help deploy the solution in such a short timeframe. It speaks volumes about the configurability and richness of their solution.”
"When we have our process risk controls and taxonomies and organization all inside MetricStream, when audit goes to audit now, that data will be there. So immediately your auditor will be happier because they don't have to spend 20 30 40 hours building RCM and checking and all that stuff. It's all there. It's all in the common language - the first line built it, second life effectively challenged it. Audit is going to do their QC and it will be a 5 hour job o 10 hour job instead of 30 40 hours."
"Today we have implemented about 6 modules in production. We started off with Case, PDMS, we went with Issue Management enterprise wide. We have about 2000 users."
"Technology is an enabler, it helps in establishing consistent practices and standards amongst all our risk disciplines."
“For GRC, we are looking to have a vision of how all these different spare pieces can come together and how we can tell the whole story."
"Technology is a key enabler. Without data that is accurate, timely, and meaningful, we are blind to our risks. Leveraging technology like MetricStream helps us gather the data that we need to make informed decisions.”
"One of the highlights of our GRC implementation is the successful use of the survey module as a global first level assurance activity. In the last 6 months alone, we've completed close to 10,000 first line assurance verification. This is supporting our control testing and eventually helping us to demonstrate the effectiveness of our controls."
"We are happy to say our compliance to incident reporting and tracking in the new software is now at 96%, previously in the first edition, it was 4%. Our action tracking today is at 89% and previously it was I think 17%."
"We are operating on one single system which gives us the ability to act prior to any incident. {This also gives us the} ability through our assurance activity to demonstrate we have a high degree of operational discipline across all areas of our business."