Out-of-the-box, FireScope includes all of the controls associated with the licensed compliance class. Each control includes a friendly name, references to the associated regulation as well as a plain language description of the requirements and guidance for IT professionals not intimately familiar with the regulation. This is designed to make it significantly easier for organizations to fully understand the requirements and take more effective actions to ensure compliance. Additionally, as regulations change or new requirements enter enforcement, FireScope Comply's auto update capability can keep you current so you never get caught unaware.
Every organization's compliance requirements are unique, based on a number of factors including size, industry and internal policies. As a result, FireScope Compliance includes the ability to either copy and modify a compliance control, or create entirely new controls. This enables a much closer fit to an organization's exact needs.
During a typical deployment of FireScope Compliance, among the first steps taken is a review of the base compliance controls. Those that do not apply to the organization are disabled. For additional requirements, existing controls are either cloned or created.

Many of the users performing tasks for compliance have little to no comprehensive knowledge of the details of the regulatory requirements they are supporting. Reading the regulations themselves usually only adds to the confusion. To reduce possible confusion and increase the effectiveness of efforts, FireScope compliance experts include a plain-language description with each control, as well as guidance that better informs users of the actual intent of requirements.
Organizations are free to expand on these sections to include their own interpretations of regulatory requirements, or in the case of custom controls communicate specific intentions.
Additionally, each control in FireScope Compliance can be linked to formal documentation of policies and testing procedures. To the left is a screen shot of a typical use case for these links. When combined with the attribute data collected, users gain a single repository to access formal policies and verify their effectiveness, without the need to consult additional applications or solutions.