1.Set up workspace — Configure company profile details, assessment boundaries, and contact info.
2.Select framework/scope — Designate applicable framework controls (GDPR, ISO 27001, etc.) in the scope settings.
3.Run audit — Execute the self-serve audit workbench to evaluate controls and compile scores.
4.Review findings — Triage open findings by severity and identify compliance readiness gaps.
5.Assign owners — Designate department heads and team contributors for each open remediation task.
6.Link evidence references — Map metadata reference records, URLs, and filenames to target controls.
7.Prepare report pack — Compile the board report containing execution highlights and top risks.
8.Review commercial package — Evaluate pilot duration, Zen/client responsibilities, and next scoping actions.
9.Share manually with client — Export copy-ready summaries and print reports to PDF for operator-assisted delivery.
10.Plan next phase — Coordinate scoping call with support to plan durable production schema updates.