APSCA Requirements Dashboard

REL-2026-12-01

Status: Planned   Release Date: 2026-12-01

Description

Backlog release for the 10 remaining platform features (Auditor Lifecycle, CPD, Financial, IAM, Membership, Firm Profile, Reporting, Security, Integrations, Ethics).

Connected Versions

EpicVersionSummary
EPIC-011
Enrollment & Onboarding
v1
Firm submits new auditor, admin review, member number assignment, login activation. Visibility rules during draft/pending states.
EPIC-012
Employment Management
v1
Auditor-firm associations, active/inactive employments, visibility permissions, duplicate prevention, disassociation workflows.
EPIC-013
Audit Log Submission
v1
Auditor submits individual audit activity records (dates, firm, country, standard). Progress tracking toward 20-day requirement. Date collision blocking, 5-year age limit, 10-day cap on second-party audits.
EPIC-014
Audit Log Verification
v1
Firm supervisor approval workflow. Per-entry approve/reject. External delegate verification via unique links. Confidentiality masking for third-party audits.
EPIC-015
Status Automation
v1
Rules engine for automatic status transitions (e.g., unpaid fees -> lapsed, lapsed > 24 months -> expired). Daily/weekly cron jobs.
EPIC-016
Level Progression
v1
ASCA to CSCA transition upon Part 3 pass. Level assignment, certificate generation, digital ID updates.
EPIC-017
Lapse & Expiration
v1
Logic for membership lapse triggers (unpaid invoices, unsigned FOA, CPD non-compliance). Expiration after extended lapse period.
EPIC-018
Status Restoration
v1
Checklist-based restoration (pay fees, sign FOA, complete CPD). Automated status update upon checklist completion.
EPIC-019
CPD Submission & Tracking
v1
Auditors submit CPD records (course, hours, date). Progress visualization toward annual requirement.
EPIC-020
Firm CPD Approval
v1
Firm supervisors review and approve auditor CPD submissions.
EPIC-021
Training Course Recognition
v1
Firms submit courses for APSCA recognition. Admin review workflow. Public/private course designation. Badge generation upon approval.
EPIC-022
Annual CPD Compliance
v1
Year-end compliance check. Status impacts (lapse trigger if non-compliant). CPD override for auditors who passed exams in current year.
EPIC-023
CPD Reporting
v1
Dashboards showing compliance rates, submissions pending review, auditor progress.
EPIC-024
Invoice Generation
v1
Creation of invoices for exams, membership, cancellation fees, etc. Line item management.
EPIC-025
Payment Processing
v1
Stripe integration for credit card payments. Payment status tracking. Receipt generation.
EPIC-026
QuickBooks Integration
v1
Two-way sync of invoices, payments, and customer records with QuickBooks Online.
EPIC-027
Firm Self-Invoicing
v1
Firms report monthly audit totals and auto-generate their own invoices based on per-audit fee.
EPIC-028
Anomaly Detection
v1
Flagging of unusual self-reported figures (e.g., significantly lower than historical average).
EPIC-029
Bulk Credits & Drawdown
v1
Firms pay lump sums; individual auditor fees draw down from credit balance.
EPIC-030
Membership Fee Processing
v1
Annual membership fee invoicing. Inactive member discounts. Fee waivers and adjustments.
EPIC-031
Authentication & MFA
v1
Login flow, multi-factor authentication, password reset, session management.
EPIC-032
Role-Based Access Control
v1
Role definitions (Auditor, Firm Contact, Firm Supervisor, Admin, etc.). Permission matrices.
EPIC-033
Multi-Role Management
v1
Users with multiple roles (e.g., auditor who is also firm contact). Role toggle within platform.
EPIC-034
Role-Specific Redirects
v1
Dashboard routing based on active role. Homepage assignment per role.
EPIC-035
Profile Validation
v1
Required fields enforcement (e.g., country of residence before exam scheduling). Profile completeness checks.
EPIC-036
Firm Membership Status
v1
Active, suspended, terminated states. Status change workflows.
EPIC-037
Individual Membership Status
v1
Auditor membership tiers and states (Provisional, Full, Lapsed, Expired).
EPIC-038
Member Categories
v1
Firm categorization (A/B/C). Category assignment and change logic.
EPIC-039
Agreements & Consent Tracking
v1
Form of Acceptance, Code of Conduct, Confidentiality Framework. Signature tracking, expiration, renewal.
EPIC-040
Annual Renewal Processing
v1
Yearly renewal workflow. FOA signature requirement. Fee generation. Status updates.
EPIC-041
Firm Profile Updates
v1
Self-service editing of firm details (logo, contact info, website, addresses).
EPIC-042
Auditor Association Management
v1
View associated auditors. Manage employment relationships. Access restrictions on PII for active/disassociated auditors.
EPIC-043
Accreditation Management
v1
Programs/brands the firm is accredited for (SMETA, BSCI, Disney, etc.). Self-service updates.
EPIC-044
Geographic Coverage
v1
Countries/regions where firm conducts audits. Self-service updates.
EPIC-045
Embeddable Public Lists
v1
Auto-updating HTML embeds for public website (member firm lists, accredited programs).
EPIC-046
Real-Time Dashboards
v1
Live views of key metrics (auditor counts by level/region, exam pass rates, CPD compliance).
EPIC-047
Geographic Visualizations
v1
Map-based displays of auditor capacity by country. Interactive filtering.
EPIC-048
Custom Report Builder
v1
Admin ability to create ad-hoc reports from available data sets.
EPIC-049
Metabase Integration
v1
Connection to Metabase for advanced analytics and visualization.
EPIC-050
Progress Tracking Visualizations
v1
Visual progress bars for audit log, CPD, certification journey. Color-coded status indicators.
EPIC-051
Audit Trail & Logging
v1
Record of all status changes, data modifications, admin actions. Timestamp, user, before/after values.
EPIC-052
Data Encryption
v1
Encryption at rest and in transit. Key management.
EPIC-053
Data Retention & Archiving
v1
Retention policies by data category. Archival process. Secure deletion at end-of-life.
EPIC-054
Backup & Recovery
v1
Automated backups. Disaster recovery procedures. Restore testing.
EPIC-055
Incident Response
v1
Security monitoring. Failed login detection. Breach response procedures.
EPIC-056
Email Deliverability
v1
SendGrid authentication. CNAME/SPF/DKIM configuration. Spam filter avoidance.
EPIC-057
Partner Verification API
v1
REST API for partners (Sedex, BSCI) to verify auditor/firm status in real-time. Replaces manual CSV uploads.
EPIC-058
LMS Integration
v1
Data exchange with Learning Management System for exam scheduling, CPD course completion, training records.
EPIC-059
Public Register Embeds
v1
Auto-updating public website content (member firm list, recognized training courses, certified auditors).
EPIC-060
ZenDesk Integration
v1
Knowledge base widget. Role-specific article display. Support ticket creation.
EPIC-061
Ethics Case Management
v1
TBD - requires dedicated discovery. Placeholder epic for ethics case management workflows.
EPIC-062
Compliance Data Tracking
v1
TBD - requires dedicated discovery. Placeholder epic for compliance data tracking workflows.
StoryVersionDescription
There are no Story Versions to display.