We would love to see a feature that allows our ISMS team to formally accept the Statement of Applicability (SOA) within the Secfix platform - similar to how policies are accepted. Ideally, this would be a one-time mandatory action (not recurring annually), visible and trackable to demonstrate alignment and awareness across the ISMS team.
Currently, we include this informally under our policies section, but having a dedicated acceptance workflow for the SOA would strengthen our audit readiness and better reflect how critical the SOA is within our ISMS.
Would be great to have this tracked in the platform, so we can show auditors that the SOA has been acknowledged by all relevant stakeholders.