Skip to content

First-Time Setup

Setting up a new OrviQ workspace involves configuring organization identity, provisioning users, establishing AI provider settings, and activating initial regulatory frameworks.


Step 1: Configure Organization & Users

  1. Navigate to Administration > Users & Roles (/admin/users).
  2. Create enterprise user accounts and assign appropriate initial roles (Compliance Manager, Risk Manager, Control Owner, Auditor).
  3. Set up organizational departments/units to organize control ownership and review assignments.

Step 2: Establish AI Provider Settings

  1. Navigate to Administration > AI Settings (/settings).
  2. Select your AI operating mode:
    • Default Hosted Platform AI: Standard hosted AI models managed by the platform.
    • Bring-Your-Own-API Key (BYO_API): Enter your organization's API credentials for OpenAI, Anthropic, Google Gemini, or Azure OpenAI.
  3. Verify that credentials are encrypted in the platform security vault.
  4. Review model assignments for extraction, assessment, and assistant tasks.

Step 3: Scope Regulatory Frameworks

  1. Navigate to Regulatory Compliance > Frameworks (/frameworks).
  2. Review available regulatory standards (e.g., UAE IA v2, ISO 27001, NIST CSF).
  3. Open the Scope Registry (/scope-registry) and mark requirements as In Scope or Out of Scope with required organizational justifications.

Step 4: Import or Register Internal Controls

  1. Navigate to Controls & Assurance > Control Register (/controls).
  2. Register your organization's baseline controls, assigning control owners and operational domains.
  3. Open the Control Crosswalk (/crosswalk) to begin establishing requirement-to-control mappings.

OrviQ Enterprise Governance, Risk & Compliance Platform