---
sourceDocument: Zurich Governance, Risk, and Compliance
sourceDocumentLink: https://www.servicenow.com/docs/r/zurich/governance-risk-compliance

 Release :

    - zurich

ft:locale :

    - en-US

ft:publication_title :

    - Zurich Governance, Risk, and Compliance

ft:clusterId :

    - grc

bundleId :

    - grc

workflow :

    - Technology


---

# CAM Workspace

# Continuous authorization and monitoring tasks in the CAM
Workspace {#ariaid-title1}

* Release version: Zurich
* 
* Updated July 31, 2025
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

The CAM Workspace is a centralized hub where you can continuously monitor and manage compliance with the NIST Risk Management Framework to ensure adherence to your security policies and guidelines.
* **[Monitoring and managing security from the CAM Workspace Home page](https://www.servicenow.com/docs/oQ9DcFX79bjzVTLTWb9ooA)**   
  The CAM Workspace is a centralized hub where you can continuously monitor and manage compliance of users and systems with the NIST Risk Management Framework to ensure adherence to your security policies and guidelines.
* **[Monitor and manage your NIST security posture](https://www.servicenow.com/docs/rDPAvYNI07dfbFCVDaOOKw)**   
  Access the CAM Overview, AO Overview, and SCA Overview dashboards from the CAM Workspace to monitor and analyze data and view CAM reports.
* **[Monitor and manage CAM tasks](https://www.servicenow.com/docs/V8TWgNwtj~t8ii~ALtFtJw)**   
  Use the Tasks page to address the approvals, control attestations, and all other items that are assigned to you and to your group.
* **[Managing POA\&Ms](https://www.servicenow.com/docs/eHXYlXW22AJr8CjnTZIdNA)**   
  In CAM application, all issues related to an authorization package are called as Plan of Actions and Milestones (POA\&Ms). The issues can be package issues, or control issues, engagement issues, or control test issues that are related to the package.
* **[View authorization boundary details](https://www.servicenow.com/docs/tQAvRGZfy91XbCAnP01vbw)**   
  Use the authorization boundary overview page to define the parameters of a security measure for an organization.
* **[View package details in CAM Workspace](https://www.servicenow.com/docs/_fxidPyubXvx8plvrbSRsw)**   
  Use the authorization package overview page to view documents and evidence that help you to assess your organization's security posture.
* **[ATO artifacts for an authorization package](https://www.servicenow.com/docs/hYPDij0AoDV4k8F2TjL4PA)**   
  Generate Authority to Operate (ATO) artifacts such as System Security Plan (SSP), Security Assessment Report (SAR), Plan of Actions and Milestones (POA\&Ms), Security Assessment Plan (SAP), Authority to Operate (ATO Letter), and Executive Summary from an authorization package in Microsoft Word format. Generating ATO artifacts as Microsoft Word format enhances ease of editing, collaboration, and compliance, confirming professional and portable documents.
* **[CAM OSCAL](https://www.servicenow.com/docs/nKSegDCVKeE3yUJonbySBg)**   
  Continuous Authorization and Monitoring supports Open Security Controls Assessment Language (OSCAL) version 1.1.2 for importing and exporting security control data in JSON format.

