{"catalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","download":{"releaseId":"sha256:4101b1b96bb5de07faf7ed2dca53bb57b8bb08318564ae7f48a0d60671344586","slug":"sox-walkthrough","url":"/assets/agent_workflow-sox-walkthrough-1fd56327.4a12be452ea868d4.json"},"kind":"record","record":{"attributes":{"department":"finance","domain":"sox","lineOfDefense":"assure"},"canonicalUrl":"https://workflow-library.com/all/?w=sox-walkthrough","description":"Runs on the existing Process item being walked (process_type=financial_reporting) — one workflow instance per walkthrough unit (process × location × variant), with the SOX program's Audit item (audit_type=sox_testing) linked as engagement context. It enriches that Process item and seeds its controls; it never creates a duplicate process. Consumes upstream: the significant-account and location scoping baseline, which it takes as a handoff package from the SOX Scoping Decision workflow rather than re-deriving. Produces the named deliverables: the documented process understanding, the identified key controls and their attributes, the control-to-risk mapping (the Risk & Control Matrix, RCM), the walkthrough memo (which doubles as the process's standing narrative), and draft Control records seeded into the register. Out of scope, owned downstream: design-effectiveness conclusions, sampling, and control testing — the handoff splits the control population so confirmed-design controls go to the SOX Key Control TOD/TOE Test workflow and open-design-gap controls go to the Control Design workflow first. It can stand alone but is designed to exchange handoff packages with these related workflows instead of duplicating repeated work.","details":{"canonicalUrl":"https://workflow-library.com/all/?w=sox-walkthrough","capabilities":[],"controls":["UC-AUDIT-21","UC-AUDIT-13","UC-FIN-01","UC-FIN-05"],"domains":["sox"],"lineOfDefense":"assure","mappingStatus":"mapped","releaseId":"sha256:4101b1b96bb5de07faf7ed2dca53bb57b8bb08318564ae7f48a0d60671344586","roleIntegrity":{"activityCount":0,"ermPhases":[],"lineRoles":[],"serviceModes":[],"warnings":[]},"sourceTemplateId":"workflow-library:sox-walkthrough","standards":["sox","coso-ic"],"teams":["finance","internal-audit"]},"id":"wf:S8","mapUrl":"https://controlsmap.com/?v=1&node=wf%3AS8","slug":"sox-walkthrough","sourceIds":["cobit-2019","coso-ic","iia-2024","nist-800-53","sox"],"sourceUrl":null,"title":"SOX Process Walkthrough","type":"workflow"},"relationships":[{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:76b7d7300105f707950a83a7aa3571ceadfd49617eae856615b8ecc13f521cf6","properties":{},"sourceDetailPath":"/data/v1/records/wf-s8-45ab5a56.json","sourceId":"wf:S8","targetDetailPath":"/data/v1/records/uc-uc-fin-01-bb3ef2cd.json","targetId":"uc:UC-FIN-01","type":"tests"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:a3aa745b503a98dfd127b82ed63c8054f64112c3a57ee3c27aa5f9a1d63a20cd","properties":{},"sourceDetailPath":"/data/v1/records/wf-s8-45ab5a56.json","sourceId":"wf:S8","targetDetailPath":"/data/v1/records/uc-uc-audit-13-3dae730e.json","targetId":"uc:UC-AUDIT-13","type":"operates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:affa96d60a0c6650e6acffcdae794e4e047b037bbe48c8bc03ceb58a61c06483","properties":{},"sourceDetailPath":"/data/v1/records/wf-s8-45ab5a56.json","sourceId":"wf:S8","targetDetailPath":"/data/v1/records/uc-uc-audit-21-6406caa4.json","targetId":"uc:UC-AUDIT-21","type":"operates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:bd49a2aadd1376edc301efdf2b14dbff4310ff2b5b6781c9c4e21d0c23d3f232","properties":{},"sourceDetailPath":"/data/v1/records/wf-s8-45ab5a56.json","sourceId":"wf:S8","targetDetailPath":"/data/v1/records/uc-uc-fin-05-52738635.json","targetId":"uc:UC-FIN-05","type":"tests"}],"schemaVersion":1}
