---
sourceDocument: Yokohama Governance, Risk, and Compliance
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/yokohama/governance-risk-compliance

 Release :

    - yokohama

ft:locale :

    - en-US

ft:publication_title :

    - Yokohama Governance, Risk, and Compliance

ft:clusterId :

    - grc

bundleId :

    - grc

workflow :

    - Technology


---

# Create a privacy assessment

# Create a privacy assessment {#ariaid-title1}

* Release version: Yokohama
* 
* Updated July 31, 2025
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 3 minutes to read

Create various types of assessments and send those assessments to the business
process or business application owners to collect their responses. The responses help you to
understand how personal information (PI) is being used or stored in a processing
activity.

## Before you begin

Role required: sn_privacy.admin and sn_privacy.manager

## About this task

Using the privacy assessment capability, you can create various types of assessments such as privacy screening initial assessments, privacy impact assessments (PIA), and privacy readiness assessments.  
The following capabilities are provided to configure the assessments:

* Mapping control objectives to the responses of the question.
* Mapping information objects to the responses of the question.
* Mapping the processing activity fields to the responses of the questions.
{#create-assessment-template__ul_rkt_jlh_sqb}  
While configuring the assessments, consider the following terminology:

* Metric type refers to the assessment template.
* Metric category refers to the section label in the assessment.
* Metric refers to a question.
{#create-assessment-template__ul_phq_wjh_sqb}

## Procedure

1. Navigate to AllPrivacy ManagementNew Assessment Template.
2. On the form, fill in the fields.  
   {#create-assessment-template__table_FloorForm__entry__2}

   | Field | Description |
   |-|-|
   | Name | Name of the assessment template. |
   | Assessment duration | Length of time allowed for completing the assessment from the time the assessment is generated. |
   | Table | Table that contains the records. |
   | Auto approve privacy assessment tasks | Option to indicate that the privacy assessment tasks must be automatically approved without a review. When this option is selected, after the assessment task is submitted, automatically the assessment task is approved and controls, risks and the information objects are created on the processing activity, and the task is closed. |
   | State | State of the assessment. This field is automatically set to Draft. |
   | Roles | Roles that have read access to the template. |
   | Classification | Classification of assessment metric type. The choices are the following: * None * Initial Assessment * PIA Assessment {#create-assessment-template__ul_pqq_ycs_1pb} |
   | Description | Purpose of the assessment template and the reason for its creation. |
   | Introduction | Guidance text for business users who respond to the assessment. |
   [Table 1. Assessment Metric Type form]

   {#create-assessment-template__table_FloorForm}
3. Click Save and Open Designer.  
   The designer contains the following elements.  
   {#create-assessment-template__table_fkc_qsv_lz__entry__2}

   | Element | Description |
   |-|-|
   | Controls | Supported question data types that are available in the Controls palette. |
   | Questions | Library of questions for various categories. |
   | Categories | New assessment opens in the Design view. The questionnaire Name field appears above the first category in the canvas. An empty question field appears in the category container. |
   [ ]

   {#create-assessment-template__table_fkc_qsv_lz}
4. Drag a control on the designer canvas to create a question of that type.  
   The canvas contains the following types of questions controls.  
   {#create-assessment-template__table_dgb_pvh_br__entry__2}

   | Data type | Description |
   |-|-|
   | Attachment | Questions that enable users to attach one or more files as a response. |
   | Boolean | Questions with the following value types: * A check box to select or clear. * A Yes or No answer. {#create-assessment-template__ul_i1z_24b_vpb} |
   | Choice | Questions with a list of predefined options. |
   | Date | Date field. Enables you to collect the date information filled in by a respondent. |
   | Date/Time | Date and time field. Enables you to collect the date and time information filled in by a respondent. |
   | Number | Number field with predefined minimum and maximum values. The default range is 1--10. |
   | Percentage | Percentage field with a prescribed range. |
   | Scale | Predefined Likert scale. Answer options appear as radio buttons. |
   | Numeric Scale | Numeric or numerical scale. Requires the respondent to provide the response in terms of numerical values. |
   | String | Single or multi-line text field. |
   | Template | List of templates that provide a predefined scale of options. |
   | Reference | List of fields from a specified reference table. |
   | Image Scale | Image question. Enables you to click images as your answer to a question. |
   | Multiple Selection | Multiple options. You can select multiple options as responses. |
   | Ranking | Question type with options as answers. The options must be ranked. |
   [Table 2. Question controls]

   {#create-assessment-template__table_dgb_pvh_br}
5. Point to Save and then click Save and Publish.  
   The state of the template changes to Published.

## Result

The assessment template with the questions is ready to be sent to the entity owner.

## What to do next

Map the assessment responses to a processing activity. For more information, see [Map the processing activity fields to a question response](https://servicenow-prod.fluidtopics.net/ZsyjssMtzLvkDA8taw_M5Q "Map some of the processing activity fields with the responses of the assessment questions to update the processing activity details based on the assessment response.").
* **[Write a processing activity script](https://servicenow-prod.fluidtopics.net/v7O8wVu1pgrJjtnwgat2pQ)**   
  Write custom scripts on the assessment templates to update the processing activity fields using a script. The script runs when the assessment response is completed. You can write multiple scripts for both screening assessments and impact assessments.
* **[Map a control objective to a question response](https://servicenow-prod.fluidtopics.net/2jsW7gEkUaTagc9ZUUdI7g)**   
  Map the control objectives to the responses of the assessment questions to automatically create and apply the respective controls on the processing activity.
* **[Map an information object to a question response](https://servicenow-prod.fluidtopics.net/WNu6BY9BKfF7NUjocENDJA)**   
  Map the \[PI\] Information objects to the responses of the assessment questions that must be associated to the processing activity. This association helps the privacy teams to understand what personal information is being processed by the processing activity.
* **[Map a risk statement to a question response](https://servicenow-prod.fluidtopics.net/gll9HzLe5iiHW8gmO5vMpg)**   
  Map the risk statements to the responses of the assessment questions to automatically create and apply the respective risks on the processing activity.
* **[Map the processing activity fields to a question response](https://servicenow-prod.fluidtopics.net/ZsyjssMtzLvkDA8taw_M5Q)**   
  Map some of the processing activity fields with the responses of the assessment questions to update the processing activity details based on the assessment response.

*[\>]: and then


