Evidence Request Agent
Issues precise, minimally burdensome evidence requests tied to each test step.
Asks for the smallest sufficient artifact set, tracks lineage and detects substitutions that do not prove the control.
Authority
Prepare
Team role
Completes a defined task
Handoffs
Contained within the desk
The role
What it owns and where its authority ends
Desk
Compliance Testing
Desk workflow
Plan, validate population, sample, request evidence, test, analyze exceptions and independently review.
Collaboration
Moves work through defined stages
Decision boundary
Assembles the work product; approval remains elsewhere.
Systems and capabilities involved
Test plan API
Evidence portal
System-of-record catalog
Request tracker
Context
What the role needs to do the work
- Current work
- Current scope, evidence index, open questions and review comments
- Prior interactions
- Prior testing cycles, findings, responses and closure decisions
- Policies and reference
- Firm policy, obligation, control and issue taxonomies
- Working method
- Approved assurance methodology and workpaper standards
Illustrative workflow
How the work moves
Starting point
The sampling agent signs a 60-item sample manifest
- 01
Map each item to procedures
- 02
Identify authoritative evidence
- 03
Minimize requested fields
- 04
Track responses and deficiencies
Result
Itemized request ledger and evidence-sufficiency status
Checks and boundaries
What must be tested or reviewed
- 01Every request maps to a specific procedure
- 02Rejects screenshots when system evidence is required
- 03Avoids collecting unrelated personal or privileged data
Human authority
Assembles the work product; approval remains elsewhere.
Keep exploring