Average Ratings 0 Ratings
Average Ratings 1 Rating
Description
The GRC software you've been looking for: Onspring. A flexible, no-code, cloud-based platform, ranked #1 in GRC delivery for 5 years running.
Easily manage and share information for risk-based decision-making, monitor risk evaluations and remediation results in real-time, and create reports with with KPIs and single-clicks into details.
Whether leaving an existing platform or implementing GRC software for the first time, Onspring has the technology, transparency, and service-minded approach you need to achieve your goals rapidly.
Our ready-made product products are designed to get you going as fast as 30 days.
SOC, SOX, NIST, ISO, CMMC, NERC, HIPAA, PCI, GDPR, CCPA - name any regulation, framework, or standard, and you can capture, test, and report on controls and then activate remediation of risk findings.
Onspring customers love the no-code platform because they can make changes on the fly and build new workflows or reports in minutes, all on their own without the need for IT or developers. When you need nimble, flexible, and fast, Onspring is the best software option on the market.
Description
TrustMAPP® is the pioneer in Cybersecurity Performance Management.. Recognized by Gartner as a leader in Cybersecurity Performance Management and Cybersecurity Maturity Assessments, TrustMAPP is used by organizations across the globe, TrustMAPP provides information security leaders an ability to quickly measure, quantify, and communicate meaningful control performance, track improvement processes, forecast investment efforts, and quickly build narratives to executive stakeholders. TrustMAPP provides remediation guidance on individual controls based on maturity scores and provides resource effort investment and financial investments to forecast future requirements for cybersecurity funding. TrustMAPP provides decision science and forecasting necessary to elevate the cybersecurity discussion in the boardroom. Information security leaders benefit from alignment with key business objectives and dynamic analytics and report-building capabilities. Information security leaders benefit from a new language that resonates with those who know little (and care even less) about the technical aspects of cybersecurity program management.
API Access
Has API
Yes
API Access
Has API
No
Integrations
Ascent
Yes
Black Kite
Yes
Cisco Secure Cloud Analytics
No
Common Controls Hub
Yes
Jira
No
Regology
Yes
RiskRecon
Yes
SecurityScorecard
Yes
Integrations
Ascent
No
Black Kite
No
Cisco Secure Cloud Analytics
Yes
Common Controls Hub
No
Jira
Yes
Regology
No
RiskRecon
No
SecurityScorecard
No
Pricing Details
$20,000/year
Choose your licensing model (by user, by product or a hybrid approach), and choose your platform level (essential features and upgrades) to fit both your needs and your budget.
Free Trial
Yes
Free Version
No
Pricing Details
Pricing based on per assessment on an annualized basis.
Free Trial
Yes
Free Version
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
Yes
In Person
Yes
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
Yes
In Person
Yes
Vendor Details
Company Name
Onspring GRC Software
Founded
2010
Country
United States
Website
www.onspring.com
Vendor Details
Company Name
TrustMAPP
Founded
2019
Country
United States
Website
trustmapp.com
Product Features
Audit
Alerts / Notifications
Yes
Audit Planning
Yes
Compliance Management
Yes
Dashboard
Yes
Exceptions Management
Yes
Forms Management
Yes
Issue Management
Yes
Mobile Access
Yes
Multi-Year Planning
Yes
Risk Assessment
Yes
Workflow Management
Yes
Business Continuity
Backup Log
No
Backup Scheduling
No
Compression
No
Continuous Backup
No
Encryption
No
Incremental Backup
No
Local Server Options
No
Multiple System Support
No
Remote Server Options
No
Secure Data Storage
No
Web Access / Restoration
No
Compliance
Archiving & Retention
Yes
Artificial Intelligence (AI)
No
Audit Management
Yes
Compliance Tracking
Yes
Controls Testing
Yes
Environmental Compliance
Yes
FDA Compliance
Yes
HIPAA Compliance
Yes
ISO Compliance
Yes
Incident Management
Yes
OSHA Compliance
Yes
Risk Management
Yes
Sarbanes-Oxley Compliance
Yes
Surveys & Feedback
Yes
Version Control
Yes
Workflow / Process Automation
Yes
Disaster Recovery
Administration Policies
Yes
Bare-Metal Recovery
No
Encryption
No
Failover Testing
No
Flexible Data Capture
No
Multi-Platform Support
No
Multiple Data Type Support
No
Offline Storage
No
ESG
Activity Dashboard
Yes
Analytics/Reporting
Yes
Audit Management
Yes
Benchmarking
Yes
Compliance Management
Yes
Data Visualization
Yes
Document Management
Yes
Performance Metrics
Yes
Risk Assessment
Yes
GRC
Auditing
Yes
Disaster Recovery
Yes
Environmental Compliance
Yes
IT Risk Management
Yes
Incident Management
Yes
Internal Controls Management
Yes
Operational Risk Management
Yes
Policy Management
Yes
Incident Management
Audit Trail
Yes
Corrective Actions (CAPA)
Yes
Disaster Recovery
Yes
IT Incident Management
Yes
Incident Reporting
Yes
OSHA Compliance
Yes
Root-Cause Diagnosis
Yes
Safety Management
Yes
Task Management
Yes
Ticket Management
Yes
Incident Response
Attack Behavior Analytics
No
Automated Remediation
Yes
Compliance Reporting
Yes
Forensic Data Retention
No
Incident Alerting
Yes
Incident Database
Yes
Incident Logs
Yes
Incident Reporting
Yes
Privacy Breach Reporting
Yes
SIEM Data Ingestion / Correlation
No
SLA Tracking / Management
Yes
Security Orchestration
No
Threat Intelligence
No
Timeline Analysis
No
Workflow Automation
Yes
Workflow Management
Yes
Integrated Risk Management
Audit Management
Yes
Compliance Management
Yes
Dashboard
Yes
Disaster Recovery
Yes
IT Risk Management
Yes
Incident Management
Yes
Operational Risk Management
Yes
Risk Assessment
Yes
Safety Management
Yes
Vendor Management
Yes
Policy Management
Approval Process Control
Yes
Attestation
Yes
Audit Trails
Yes
Policy Creation
Yes
Policy Library
Yes
Policy Metadata Management
Yes
Policy Training
Yes
Reporting / Analytics
Yes
Version Control
Yes
Workflow Management
Yes
Risk Management
Alerts/Notifications
Yes
Auditing
Yes
Business Process Control
Yes
Compliance Management
Yes
Corrective Actions (CAPA)
Yes
Dashboard
Yes
Exceptions Management
Yes
IT Risk Management
Yes
Internal Controls Management
Yes
Legal Risk Management
Yes
Mobile Access
Yes
Operational Risk Management
Yes
Predictive Analytics
Yes
Reputation Risk Management
Yes
Response Management
Yes
Risk Assessment
Yes
Vendor Management
Audit Management
Yes
Contact Management
Yes
Customer Database
Yes
Self Service Portal
Yes
Supplier Master Data
Yes
Transaction History
Yes
Vendor Maintained Profiles
Yes
Vendor Managed Inventory
Yes
Vendor Performance Rating
Yes
Vendor Qualification Tracking
Yes
Product Features
Business Performance Management
Ad Hoc Reports
Yes
Ad hoc Analysis
Yes
Budgeting & Forecasting
Yes
Consolidation / Roll-Up
Yes
Dashboard
Yes
Key Performance Indicators
Yes
Predictive Analytics
No
Qualitative Analysis
Yes
Quantitative Analysis
Yes
Scorecarding
Yes
Strategic Planning
Yes
Compliance
Archiving & Retention
Yes
Artificial Intelligence (AI)
No
Audit Management
Yes
Compliance Tracking
Yes
Controls Testing
Yes
Environmental Compliance
No
FDA Compliance
No
HIPAA Compliance
Yes
ISO Compliance
Yes
Incident Management
No
OSHA Compliance
No
Risk Management
Yes
Sarbanes-Oxley Compliance
Yes
Surveys & Feedback
Yes
Version Control
No
Workflow / Process Automation
Yes
Cybersecurity
AI / Machine Learning
Yes
Behavioral Analytics
No
Endpoint Management
No
IOC Verification
No
Incident Management
No
Tokenization
No
Vulnerability Scanning
No
Whitelisting / Blacklisting
No
Data Governance
Access Control
No
Data Discovery
Yes
Data Mapping
Yes
Data Profiling
No
Deletion Management
No
Email Management
No
Policy Management
Yes
Process Management
Yes
Roles Management
No
Storage Management
No
Integrated Risk Management
Audit Management
Yes
Compliance Management
Yes
Dashboard
Yes
Disaster Recovery
Yes
IT Risk Management
Yes
Incident Management
No
Operational Risk Management
Yes
Risk Assessment
Yes
Safety Management
No
Vendor Management
Yes
Risk Management
Alerts/Notifications
Yes
Auditing
Yes
Business Process Control
Yes
Compliance Management
Yes
Corrective Actions (CAPA)
No
Dashboard
Yes
Exceptions Management
Yes
IT Risk Management
Yes
Internal Controls Management
Yes
Legal Risk Management
No
Mobile Access
No
Operational Risk Management
Yes
Predictive Analytics
No
Reputation Risk Management
No
Response Management
No
Risk Assessment
Yes