What purpose do screenshots serve?
Screenshots serve as sample evidence demonstrating the effective operation of a control. For example, you may need to capture the settings or configurations of your application firewall, or a sample of how data is classified within your system.
In every screenshot, be sure the following is visible:
Date/timestamp:
By capturing the date/timestamp within the screenshot itself, you are demonstrating to the auditor that the information was captured during your audit window. This can simply be the date/timestamp in the bottom or top corner of your screen provided by your computer's operating system.Source of screenshot:
The screenshot should clearly show what you are capturing and where you are capturing it from. For example, if you are capturing a screenshot of your software ticketing/workflow tool system dashboard, it should clearly show the Jira label in the corner (or the logo of whichever software you use). When in doubt, it's better to capture more information than less so that the auditors have context.
How do I upload screenshots?
Strike Graph offers two ways to add your supporting evidence to the platform: manual upload or upload via one of our integrations. For a deeper dive into the uploading process, check out How to successfully upload files.
For more guidance, check out our "Evidence Repository" collection.
