A county wants newly discovered critical business applications in the CMDB to become GRC entities without weekly spreadsheet imports. What integration pattern should the implementer use?
Select an answer to reveal the explanation.
Short Explanation
When CMDB learns about a hot new app, GRC should hear about it too. Wire entity generation or sync so critical apps become entities on their own. Typing them as citations or hiding in VR groups misses the entity framework.
Full Explanation
Common IRM integrations include sourcing entities from CMDB CIs that meet criticality or class criteria. Automatic entity generation keeps the GRC scope aligned with the application estate. Citations and security modules are not substitutes for entity records that policies and risks attach to.