---
title: "Assessment management"
canonical: "https://auditbadger.com/nl/functies/assessment-management/"
last-updated: "2026-09-05"
---

# Assessment management

Formal compliance assessment workflows — internal audits, control effectiveness testing, gap analyses, and certification audit prep — with structured stages, evidence linking, hierarchical control rollup, and Excel export for auditor handoff.

## What it does

| Capability | Detail |
|---|---|
| **Assessment lifecycle** | Four-stage workflow: **Planning → In Progress → Review → Completed** |
| **Scope and focus** | Filter controls by framework, section, owner, or status to scope the assessment |
| **Per-control results** | Compliance status per control: **Compliant / Partially Compliant / Non-Compliant / Not Assessed** |
| **Sub-control rollup** | Sub-control results automatically roll up to parent controls |
| **Evidence linking** | Attach evidence to each assessment result; reuse existing control evidence |
| **Findings documentation** | Document gaps, observations, and recommended actions per control |
| **Excel export** | Full assessment results exportable for auditor handoff |
| **Audit trail** | Every status change and evidence attachment is timestamped and attributed |

## Common assessment types

- Annual SOC 2 Type II readiness assessments
- ISO 27001 internal audits and Stage 1 / Stage 2 prep
- Internal compliance reviews and gap analyses
- Control effectiveness testing
- Vendor security assessments (re-using the questionnaire engine)

## Workflow

1. **Plan** — define scope and focus areas, filter controls
2. **Execute** — assess each in-scope control, document findings, link evidence
3. **Review** — peer or management review of results
4. **Report** — export to Excel for auditor handoff or stakeholder reporting

## Useful links

- Sign up: [auth.auditbadger.com/signup](https://auth.auditbadger.com/signup)
- All features: [/features](/features)
- Compliance management (control hierarchy): [/features/compliance-management](/features/compliance-management)
- Vendor assessment: [/features/vendor-assessment](/features/vendor-assessment)
- SOC 2 deep dive: [/compliance/soc2](/compliance/soc2)
- ISO 27001 deep dive: [/compliance/iso27001](/compliance/iso27001)
