The Employee Portal is a dedicated interface for your team members to complete their individual compliance responsibilities. Rather than requiring compliance managers to chase employees for policy acknowledgments, training completion, and device registration, the portal puts these tasks directly in front of each employee.

What Employees Can Do

View & Acknowledge Policies

Read assigned company policies and confirm acknowledgment. Tracks which policies each employee has reviewed.

Complete Training

Access assigned security awareness training courses, complete them, and receive completion certificates.

Register Devices

Register work devices (laptops, phones, tablets) and view their compliance status.

Report Incidents

Submit security incident reports directly through the portal. Reports are routed to the security team automatically.

View MFA Status

Check whether MFA is enabled on their account and take action if it is not.

How the Employee Portal Works

The Employee Portal is a separate, simplified interface from the main LowerPlane dashboard. Employees access it through their own login and see only their personal compliance tasks and information.
1

Employee receives an invitation

When an employee is added to the People directory (manually or via HR integration sync), they can be invited to the Employee Portal.
2

Employee logs in

The employee signs in using their credentials, SSO, or the link provided in the invitation email.
3

Dashboard shows outstanding tasks

The portal home page displays a summary of pending actions: policies to acknowledge, training to complete, devices to register.
4

Employee completes tasks

The employee works through their tasks at their own pace. Completions are recorded automatically in LowerPlane.

Portal Home Dashboard

The employee’s home dashboard displays:
SectionDescription
Pending actionsCount of outstanding tasks requiring attention
PoliciesNumber of policies awaiting acknowledgment vs. total assigned
TrainingTraining courses assigned, in progress, and completed
DevicesRegistered devices and their compliance status
MFA statusWhether MFA is enabled on the employee’s account

Why the Employee Portal Matters for Compliance

Employee engagement with security policies and training is a key requirement across all frameworks:
FrameworkEmployee Compliance Requirements
ISO 27001A.7.2.2 (Information security awareness, education, training)
SOC 2CC1.4 (Demonstrates commitment to competence), CC2.2 (Communication of responsibilities)
HIPAA164.308(a)(5) (Security awareness and training)
GDPRArticle 39 (Tasks of the DPO include training staff)
PCI-DSS12.6 (Implement a formal security awareness program)
The Employee Portal creates an auditable record of each employee’s compliance activities, providing evidence that your organization meets these requirements.

Compliance Evidence Generated

Every action in the Employee Portal generates evidence:
  • Policy acknowledgment records — Who acknowledged which policy, and when
  • Training completion records — Course completions with dates, scores, and certificates
  • Device registration records — Which devices are registered to which employees
  • Incident report records — Submitted incident reports with timestamps
  • MFA enrollment records — Whether the employee has MFA enabled
This evidence feeds directly into the relevant compliance controls and tests in LowerPlane.
Send periodic reminders to employees with outstanding tasks. A monthly email highlighting pending policy acknowledgments and incomplete training courses significantly improves completion rates.

Access and Permissions

Employees accessing the portal can only:
  • View policies assigned to them
  • Complete training assigned to them
  • Manage their own devices
  • Submit incident reports
  • View their own compliance status
They cannot view other employees’ data, access the main compliance dashboard, modify controls, or change any organization settings.
The Employee Portal is intentionally simple. Employees should be able to complete their tasks in a few minutes without any training on the tool itself.

Setting Up the Employee Portal

  1. Sync your people directory. Connect an HR integration or manually add employees in Personnel > People.
  2. Assign policies. Publish policies through the Policy Center and mark them as requiring employee acknowledgment.
  3. Assign training. Create or import training courses and assign them to employees or groups.
  4. Invite employees. Send portal invitations to employees, either individually or in bulk.
  5. Monitor completion. Track acknowledgment and training completion rates from the main LowerPlane dashboard.