Skip to content

Assurance

🛡️ How-To Guide: The Assurance Section

This section is your central command center for managing Governance, Risk, and Compliance (GRC). It’s designed to help you proactively identify issues, manage incidents that occur, and assess long-term organizational risks.

1. How to Access the Assurance Sub-sections

Unlike the other modules, "Assurance" is a category that contains three separate sub-sections.

  • Step 1: On the left-hand navigation bar, click on the "Assurance" link. It has an icon of an exclamation mark in a diamond.
  • Step 2: When you click it, a sub-menu will expand, showing three new options:
    • Hazards
    • Incidents
    • Risks

Here is the guide for each of those three sections.

1A. Hazards

This sub-section is for proactive risk management. You use it to log and track potential hazards before they can cause an incident or injury.

  • What it's for: Recording and managing potential issues, like "a wet floor," "a frayed electrical-cord," or "an unlocked medicine cabinet."
  • Inferred Step-by-Step Guide:
    1. Navigate to Assurance > Hazards to see a list (or "register") of all known hazards.
    2. Look for a button labeled "+ Log Hazard" or "Add New Hazard".
    3. Click it to open a new form.
    4. Fill in the details, which will likely include:
      • Hazard Description: What is the potential problem?
      • Location: Link it to a Specific Facility (e.g., "Facility 01").
      • Risk Level: Assign a severity (e.g., Low, Medium, High).
      • Date Spotted: When was this hazard identified?
      • Status: Set the current status (e.g., "Reported," "Under Review," "Resolved").
    5. As the hazard is fixed (e.g., the frayed cord is replaced), you would return to this entry, document the corrective actions, and change the status to "Resolved."

1B. Incidents

This sub-section is for reactive management. You use it to create official reports for events that have already happened.

  • What it's for: Logging and tracking all incidents, such as "a resident fall," "a medication error," "a data breach," or "a formal complaint".
  • Inferred Step-by-Step Guide:
    1. Navigate to Assurance > Incidents to see a dashboard or list of all reported incidents.
    2. Look for a button labeled "+ Report Incident" or "Log New Incident".
    3. Click it to open a detailed incident report form.
    4. Fill in the form with all required information, such as:
      • Incident Type: Select from a list (e.g., "Fall," "Complaint," "Medication Error").
      • Date and Time: When did the incident occur?
      • Facility: Where did it happen?
      • Individuals Involved: Link to any residents or staff involved.
      • Incident Description: A detailed, factual account of what happened.
      • Immediate Actions Taken: What was done right away to ensure safety?
    5. After submitting, the incident is logged with a status like "Open" or "Under Investigation." You will use this section to track all follow-up actions, investigations, and the final resolution, creating a complete record for auditing and review.

1C. Risks

This sub-section is for strategic risk management. This isn't for a single wet floor (that's a hazard) or a single fall (that's an incident), but for high-level organizational risks.

  • What it's for: Maintaining your formal "Risk Register." This is where you identify, evaluate, and mitigate broad risks to the organization, such as "Staffing Shortages," "Regulatory Changes," "Cybersecurity Threats," or "Financial Risks".
  • Inferred Step-by-Step Guide:
    1. Navigate to Assurance > Risks to view your organization's risk register.
    2. Look for a button labeled "+ Add Risk" or "Create New Risk".
    3. Click it to open a form for defining the risk.
    4. Fill in the details, which will likely include:
      • Risk Title: A clear name for the risk (e.g., "Risk of Non-Compliance with New Regulations").
      • Risk Category: (e.g., "Operational," "Financial," "Compliance").
      • Risk Assessment: You will likely assign scores for Likelihood (how likely is this to happen?) and Impact (how bad will it be if it does?).
      • Control Measures: What is the organization currently doing to prevent or reduce this risk? (e.g., "Quarterly training," "Firewall in place").
      • Risk Owner: Assign a person responsible for monitoring this risk.
    5. This register is a "living document" that you will review regularly (e.g., quarterly) to update risk scores and ensure your controls are effective.

More How To Guides

Evidence
This guide explains how to use the Evidence section in Governa to upload, organise, and map compliance documents. It walks through each step, from selecting the scope and upload method to setting sensitivity levels and choosing between manual or AI-powered mapping. The summary helps readers understand how evidence supports compliance and creates a clear, auditable record for assessors and auditors.
Read More
Facilities
The Facilities Section is the central hub for managing the different physical locations, sites, or organizational units within your company. While other pages allow you to filter by these facilities, this section is where you create and manage them.
Read More
Frameworks
This guide explains how to use the Frameworks section to monitor compliance across your organisation. It shows how to filter by facilities, search for standards, apply advanced filters, and navigate standard cards to access detailed information.
Read More
Gap Analysis
The Gap Analysis section is a powerful, organization-wide report that "zooms out" to show you exactly where your compliance gaps are. It directly compares your Standards, Policies, and Evidence to find what is missing, expired, or needs review.
Read More
Gap Analysis
The Gap Analysis section gives you a clear, organisation-wide view of missing or incomplete compliance requirements. It highlights gaps in your policies and evidence so you can see exactly what needs attention. This guide explains how to access the section, filter the report, navigate standards, and read the gap indicators.
Read More
Norma Chatbot
The Norma Chatbot is your personal AI-powered assistant for the Governa platform. Instead of manually searching for information, you can ask Norma questions in plain English, and it will analyze your organization's data to give you a complete answer.
Read More
Policies
The Policies section is your central repository for managing all of your organization's policies and procedures. This is where you upload, view, and link your policies to the specific compliance standards they help you meet.
Read More
Residents
The Residents section is your central database for managing all residents, a critical task in an Aged Care setting. It functions as the "single source of truth" for every person's demographic and location information. This how-to guide provides complete, step-by-step instructions on how to access the section , search for a resident , add a new resident , view an individual's profile , and edit their details.
Read More