Translation: Empowering Security, Governance, Risk and Compliance Case Management
Posted by
Clinton Kabler
on
Monday, February 15, 2010 11:12 PM
How does a North American manufacturer extend its security, governance, risk and compliance reporting to employees in Brazil where the requirement for English proficiency does not apply below a certain seniority level?
The security, governance, risk and compliance posture of an organization depends upon the effectiveness of localizing the origination channels for reporting instances of non-compliance. From the standpoint of an Enterprise 2.0 solution, localization is easily achieved by simply empowering the business user. However, the greatest barrier to localization is language. Most organizations establish an official language of business for enterprise software. Unfortunately, the official language inherently results in an exclusionary posture when dealing with security and GRC issues.
The easy solution – configure all fields as dropdown or radio controls with predefined values – works when fields with predefined options suffice. Nevertheless, security and GRC issues cannot always be predefined. The problem requires translation. Over the past two years, advances in algorithmic translation tools have resulted in acceptable accuracy that allow for a North America based investigator to analyze and respond to submissions originating from a non-English speaker. Realizing the value such advances bring to the customer, D3 has implemented algorithmic translation within its e-Alert module. As such, a North America based security and GRC professional who manages cases that originate in Portuguese can now receive and analyze e-Alert submissions that contain free text fields by initiating a translation from Portuguese to English. The algorithms used by D3 permit translation from 35 languages to English. When translated, the original e-Alert data is captured in the source language preserving discovery.
By providing a powerful localization solution, D3 demonstrates segment leadership that globalizes the posture for security and GRC to the benefit of the organization and empowers the business user.