Administration and maintenance

Managing automations

Purpose

The app takes over recurring work: 13 automations compute values, inherit assessments, synchronise statuses and remind about deadlines. In the Automations area you switch them on and off individually and start them manually; all of them are active out of the box.

Who can do this

Everyone can view the area; the toggles and Run now are reserved for Jira administrators.

View layout

Four groups — Requirements Management, Audit Nonconformities, Measures Management, Risk & Asset Management — each with a counter “n/m enabled”. Per row: toggle, name and description, kind (manual / event / daily), Last run (result and timestamp) and Run now.

Automations: each rule can be switched on or off, shows its kind and last run, and can be started manually via “Run now”.

The 13 automations

AreaAutomationWhat it doesTrigger
RequirementsInherit Security GoalsAggregates CIA and InfoSec objectives from linked requirements (de-duplicated)manual
RequirementsStore Previous FulfillmentStores the previous value of “Completion” from the changelogmanual
Audits & NCStatus Synchronization: Measure ↔ NonconformityMoves linked nonconformities and risks to “Under review” once the measure is implementedmanual
Audits & NCStatus Sync From MeasureThe same for a single measure as soon as it reaches “🟢 Implemented”event
Audits & NCDue Date Monitoring for NonconformitiesReminds before the due date — 30 days ahead for major/minor nonconformities, 14 days for opportunities for improvementdaily
MeasuresReminder for Effectiveness ReviewComments on measures in effectiveness review whose review date is > 10 days past without a resultdaily
MeasuresOverdue Monitoring with EscalationNotifies assignee and accountable about overdue measures — 1/3/7/30 days after the due date, then monthlydaily
MeasuresReview Status & EscalationComputes “📅 Next Review”, sets the 🟢/🟡/🔴 traffic light (for all types with an interval) and escalates along the configured stagesdaily + event + manual
Risks & AssetsCalculate Risk CategoryLikelihood × impact → current/target risk categorymanual + event
Risks & AssetsAccumulate Risk Category to ParentAggregates the child risk scenarios’ assessments onto the parent objectmanual
Risks & AssetsComment Linked Risk On Measure DoneComments on the risks linked via “mitigates” when a measure is finishedmanual
Risks & AssetsInherit Personal DataCarries the personal-data category from information objects over to the assetmanual + event
Risks & AssetsInherit Protection NeedAggregates C/I/A from linked active information objects onto the asset; protection need = maximummanual + event

Background runs without user action

  • Daily: licence check; the four daily helpers (effectiveness reminder, overdue monitoring, review status, NC deadlines) plus filter self-healing; document-control reminders; the privacy report to Atlassian.
  • Weekly: the risk-trend snapshot — it builds the time series for the dashboard’s Risk trend tile.

Troubleshooting

  • An automation does not fire: is it enabled? Daily helpers only run at the next cycle — start manually for an immediate result. For the risk calculation, both input values (1–4 each) must be set.
  • “✕ n failed” on a group: open the row and check Last run — the message names the cause.

Screenshots from the development environment with sample data.

Documentation baseline: app version 1.1.15 · 2026-08-20