Skip to content

Evidence

Last checked on

Evidence is where you keep the files and links that show a measure works, such as an export of user accounts or the report of a restore test. One piece of evidence can support several measures and requirements at once.

Why this protects your organisation

Saying you review access rights every quarter is not the same as being able to show it. When a customer or an auditor asks, you want to find the evidence within a minute and know whether it is still current. Linking evidence to the measure it belongs to, with a date until which it is valid, tells you in good time what needs renewing. ISO 27001 clauses 7.5 and 9.1 ask for recorded evidence that your measures work.

Steps

  1. Open Evidence in the Measures and evidence group and click the button to create new evidence.
  2. Fill in a Title and use What it shows to describe what the evidence covers.
  3. Choose the Type. For File you upload the file, for Link you enter the link.
  4. Choose the Status, an Owner and, if it applies, Valid until, then save.
  5. On the evidence page, use Link measure to connect the measures it shows are working.
  6. Under Requirements, use Link requirement to connect the requirements of your standards it supports.

Types of evidence

You choose from Document, Link, File, Note and Other. With File you upload the evidence itself. With Link you point to where it lives, such as a report in another system. Download or Open link in the list takes you straight to it.

Status and validity

The status (Draft, Active, Under review or Archived) tells you whether the evidence counts. Only active evidence that has not expired counts towards the Still working? signal on a measure. Once the Valid until date has passed, Trustbird quietly marks the evidence as expired.

What the list shows

For each piece of evidence you see how many measures and requirements it supports, so you can quickly spot evidence that is not linked to anything yet. You can filter by Status and by Expired.

If it does not work

My file is not accepted

A file can be at most 20 MB. With the type File a file is required, and with the type Link a valid link is required.

A piece of evidence has a highlighted date

The Valid until date has passed, so the evidence no longer counts. Add a current version or extend the date. The Expired filter shows all expired evidence together.

Someone outside the workspace cannot open a file

That is intended. Files are kept in the workspace's private storage and only members of this workspace can download them.

I do not see Link measure, or cannot save

Editing is for the workspace owner and members. An advisor needs edit rights on the Risks and controls module.

Screens this is about

  • Evidence

Read next