Skip to main content

KPIs (Key Performance Indicators)

The KPI module provides two complementary views: Compliance Metrics — auto-calculated scores derived from live platform data — and Custom KPIs — manually tracked indicators with quarterly status monitoring.

Overview

Access from Reporting → KPIs in the sidebar. The page has two tabs: Compliance Metrics and Custom KPIs.

KPIs page showing Compliance Metrics tab with 34% Overall Compliance Health composite score, status summary (3 On Target, 1 Warning, 16 Off Target), stacked category bar, seven category cards (Recurring Controls 13%, Policy Compliance 75%, Vendor Risk 87%, Risk Management 15%, Vulnerability Management 33%, Incident Response, Framework Control Implementation 13%), and Needs Attention list showing 16 off-target metrics with current vs target values

Compliance Metrics

The Compliance Metrics tab auto-calculates a composite compliance health score from live platform data across seven categories. No manual input required — scores update as you work.

Overall Compliance Health

The header card shows:

  • Composite Score — Weighted average across all categories (0–100%)
  • On Target — Count of metrics meeting their target threshold
  • Warning — Count of metrics within tolerance of their target
  • Off Target — Count of metrics below target
  • Category Bar — Color-coded stacked bar showing each category's contribution

Click Refresh to recalculate scores from current data.

Metric Categories

Each category calculates a health percentage from its constituent metrics:

CategoryWhat It Measures
Recurring Controls HealthControl operating effectiveness, overdue controls, owner coverage
Policy CompliancePolicy acknowledgment rates, review compliance, overdue reviews
Vendor RiskVendor assessment completion, overdue reviews, owner coverage
Risk ManagementRisk remediation rate, risk owner coverage
Vulnerability ManagementRemediation rate, critical/high open findings, mean time to remediate
Incident ResponseAfter-action review completion rate
Framework Control ImplementationImplementation rate per framework, controls without owners

Click View details on any category card to expand its individual metrics.

Needs Attention

Below the category cards, the Needs Attention section lists all off-target metrics with:

  • Metric name and parent category
  • Current value (red) vs. target value
  • Sorted by severity — most critical gaps first

Threshold Bands

BandColorDescription
On TargetGreenMetric meets or exceeds target
WarningAmberWithin 15% tolerance of target
Off TargetRedBelow target threshold

Custom KPIs

The Custom KPIs tab lets you define and track manually managed indicators with quarterly progress monitoring.

Creating a KPI

  1. Navigate to Reporting → KPIs → Custom KPIs
  2. Click Create KPI
  3. Fill in name, owner, due date, and notes

KPI Fields

FieldDescription
NameWhat is being measured
OwnerPerson responsible for this KPI
Due DateTarget completion or review date
NotesDescription, targets, and measurement criteria
Remediation NotesAction items when off-track
Q1–Q4 StatusQuarterly status indicators

Quarterly Status Tracking

Each KPI has four quarterly status indicators. Click any quarter's status in the grid view to cycle through options:

StatusDescription
Not StartedQuarter hasn't begun or work not initiated
On TrackMeeting targets, no concerns
At RiskBehind target, intervention needed
MissedFailed to meet the target for this quarter
CompletedSuccessfully achieved the target
Not ApplicableKPI doesn't apply to this quarter

Risk & Control Linking

Link KPIs to related records for bidirectional context:

  • Risk Links — Connect to risks this KPI helps monitor or mitigate
  • Control Links — Connect to recurring controls that contribute to this KPI

These links are visible from both sides — view which KPIs track a risk's effectiveness from the risk detail, or see which controls feed into a KPI from its detail panel.