CoreStream 2.4 Release Notes

CoreStream 2.4 is an exciting release for a number of reasons. It is the first release where we have adopted our new fixed length release process, ensuring we deliver a new Platform release every 2 months. It means being strict with scope, but it helps ensure we can articulate our roadmap with more confidence, and…

Richard Eddolls Avatar
CoreStream GRC logo against dark blue background and blue and green gradient

CoreStream 2.4 is an exciting release for a number of reasons. It is the first release where we have adopted our new fixed length release process, ensuring we deliver a new Platform release every 2 months. It means being strict with scope, but it helps ensure we can articulate our roadmap with more confidence, and clients have access to new releases more frequently. In addition to this, technical work on integrations has been separated from the release. This means we can work on integrations without impacting the timeframe of our core release.

On the feature front, there are a number of great additions. The calendar view reflects further progress on the Social GRC front and provides an additional interface for clients to view and edit their data in CoreStream. Our next generation Policy Manager now has further styling improvements and integrated attestations with the optional feature to record the amount of time that a user spends reading the given policy, procedure or standard.

On the configuration front, we have continued to make improvements to ensure we can do more with less for our clients. The site builder has been extended to generate tree views and create lookups and we have added the aged chart and heat maps to our admin user configurable dashboards. We are now also able to automatically generate data import templates AND make the data import tool available to clients.

In 2.5 we are looking at further improving our whistleblowing capability with a feature that means those wishing to submit anonymously can do so without authenticating, providing them with a greater level of comfort in doing so.

Please do get in touch with any suggested improvements, or if you wish to discuss any of the features listed in more detail.

Thanks,

Rich

FAQ

What was significant about the CoreStream GRC 2.4 release?

The September 2023 version 2.4 release marked the first time CoreStream GRC adopted its fixed-length release process, committing to new platform updates every two months. This change improved transparency and predictability for clients, allowing CoreStream GRC to deliver enhancements more frequently while maintaining strict control over release scope.

What was new in version 2.4?

CoreStream GRC 2.4 introduced major functional and design enhancements, including a new calendar view for data visualization, upgrades to the next-generation Policy Manager, and expanded configuration tools for administrators. Together, these updates improved usability, efficiency, and customization across the platform.

What did the calendar view feature offer?

The September 2023 CoreStream GRC version 2.4 release offered a calendar view provided a visual and interactive way for users to manage and edit data directly within CoreStream GRC. It represented another step forward in CoreStream’s focus on “Social GRC,” making risk and compliance management more intuitive and collaborative.

What improvements were made to the Policy Manager?

The September 2023 CoreStream GRC version 2.4 release offered a next-generation Policy Manager, which received design refinements and integrated attestations, enabling organizations to track user acknowledgment and even measure how long users spent reading policies, procedures, or standards. This helped organizations verify engagement and compliance more accurately.

  • Controls management: how to prove value, not just activity  

    Controls management: how to prove value, not just activity  

    Key takeaways  Introduction: why controls management needs to move beyond activity  Most organizations have controls in place. That is not the hard part.  The harder question is whether those controls are effective, current, owned by the right people, supported by evidence and connected to the risks that matter most. This is the proof burden now sitting behind…

  • 8 risk and compliance leaders to follow and learn from on LinkedIn 

    8 risk and compliance leaders to follow and learn from on LinkedIn 

    We’re shining a spotlight on the people shaping the future of governance, risk and compliance.  LinkedIn is one of the best places to find real conversations about risk leadership, compliance culture, internal audit, AI governance, operational resilience and the future of GRC.  In this blog, we’ve curated 8 GRC leaders worth following on LinkedIn. Their work spans:  From established analysts and community…

  • The Novo Nordisk breach shows cyber extortion now targets far more than personal data – what risk and compliance leaders can learn from this 

    The Novo Nordisk breach shows cyber extortion now targets far more than personal data – what risk and compliance leaders can learn from this 

    Key takeaways What happened at Novo Nordisk?  Reuters reported that cyber extortion group FulcrumSec claimed it spent more than 2 months inside Novo Nordisk’s network and stole more than 700,000 files, equal to roughly 1.3 terabytes of data. The group also claimed Novo Nordisk refused to pay a $25m extortion demand. Reuters said it could not immediately verify the authenticity of the data…