Today during TrustWeek, OneTrust, the market-defining leader for trust intelligence, unveiled innovations to help organizations manage the complexity of their trust programs, better understand their data to activate and use it, be more resilient against emerging threats, and unlock productivity when navigating compliance. These innovations include new capabilities across OneTrust’s Trust Intelligence Platform and four clouds: Privacy & Data Governance, GRC & Security Assurance, Ethics & Compliance, and ESG & Sustainability.
"With the increase of importance in first-party data and use of AI, trust has quickly become the ultimate enabler for innovation,” said Blake Brannon, Chief Product and Strategy Officer at OneTrust. “Every innovation you deliver as a business, whether it’s digital or operational, requires trust. At OneTrust, we are building the solutions that enable our customers to transform siloed compliance initiatives into world-class, coordinated trust programs.”
OneTrust’s Trust Intelligence Platform helps companies build and scale trust, surface and mitigate risks, collaborate across data siloes, and go beyond compliance. According to IDC1, “OneTrust created a trust platform that not only enables better privacy compliance outcomes for its clients but manages other types of risk.”
OneTrust’s latest innovations include:
Responsible AI
- AI Governance: Responsible AI starts with visibility into AI systems, their foundational models, and the datasets used for training. OneTrust AI Governance helps organizations govern AI and mitigate risk across the business. They can discover where AI and ML are being used, built, or procured, and evaluate the risks to demonstrate trust and compliance with global requirements. Maintain an inventory of AI technology across the business. Assess AI for bias, fairness, and transparency against global laws and frameworks. Evaluate use cases, surface risks, and govern every phase of AI development.
Privacy and Consent
- Localized Consent Action: Enterprises need scalable and flexible solutions to collect first-party data from global audiences and meet regional compliance requirements. Now, companies can leverage user location to deliver dynamic experiences while enforcing consent in downstream systems. Automate user-tailored engagement and trigger compliance requirements, like double opt-in or location-driven marketing, based on location.
- Consent Support for TCF2.2, GPP, and Google: OneTrust’s CMP is now Google certified and provides support for IAB TCF 2.2 and GPP for multiple US states. This allows customers to protect ad monetization and deliver consent-based ads by streamlining the collection and transmission of consent signals from sites and apps downstream to ad tech providers.
Data Discovery and Governance
- Data Catalog Integration: Now, customers can seamlessly integrate OneTrust's leading data discovery and classification into existing data catalogs. Enrich data catalogs by automatically synchronizing data, classifications, and regulatory intelligence from OneTrust into data catalogs. Continue using system-of-record for data cataloging while adding industry-leading data insights from OneTrust.
- Access Insights Dashboards: OneTrust is making it easier for companies to understand what sensitive data risk they have due to inadequate access permissions on sensitive data sets. This allows quick identification of data-related risks present across an organization’s data ecosystem.
- Data Policy Enforcement: In order to reduce data risk and ensure compliance, companies need the tools to build policies and automate mitigating actions. Now, customers can configure new data policies to identify data in violation of data protection and retention policies. Review, triage, and share the policy violations for remediation in the source system. Rescan the violations to validate that remediation efforts were successful.
Technology and Enterprise Risk and Compliance
- Compliance Automation: Compliance professionals are overloaded managing various frameworks and associated requirements across sprawling operations. OneTrust enables organizations to centrally manage compliance initiatives, scope them based on requirements, and leverage in-depth guidance on more than 30 standards and frameworks, powered by OneTrust’s regulatory intelligence. Teams can automate evidence collection, assess the status of controls, identify gaps, and generate action plans. Test once, comply many with OneTrust’s proprietary shared evidence framework to seamlessly map evidence across multiple frameworks.
- Enterprise Risk Management: As organizations grow, they are challenged in managing emerging risks in the context of increasingly complex geography and product portfolios. Now, customers can link their Enterprise and Business risks across OneTrust to establish an effective Enterprise Risk Management (ERM) program. Identify risk against business objectives to effectively weigh business opportunities, build a dynamic risk taxonomy to better understand total impact, and define risk appetite to enable effective decision making for downstream risk owners.
Third-Party Risk Management
- Third-Party Risk Exchange Enhanced Data Coverage: The OneTrust Third-Party Risk Exchange has expanded access to third-party risk ratings and critical firmographic information to streamline third-party risk evaluations, monitor for new threats, and trigger automated workflows when new risks arise. Add immediate insights about third parties by connecting evergreen risk ratings on over 125,000 third parties to existing inventory. Stay on top of data breaches across the third-party ecosystem with a verified data-breach newsfeed from HackNotice. Evaluate the financial health and resilience of third parties with FHR ® ratings from RapidRatings.
- Enhanced Third-Party Due Diligence: Gather deeper insights about higher risk third parties with the ability to order Enhanced Due Diligence reports directly in the OneTrust platform. Audit-ready and research-based risk evaluation reports allow organizations to accelerate decision making and apply a risk-based approach to third-party due diligence.
Platform Enhancements to Build and Scale Trust Programs
- Platform Search: Customers can pinpoint records in less time by searching across the entire OneTrust platform without specifying a module. View a precise list of records with advanced search, sort, and filtering capabilities.
- Workspaces: Workspaces simplifies end-user navigation, making it easier to locate the desired module and more efficiently move between related modules. New capabilities include the segmentation of data within specified workspaces and tailored workspaces designed for specific use cases.
- Enhanced Insights Dashboards: Improved out-of-the-box dashboards and question-and-answer-driven widgets enable customers to uncover new and meaningful program insights, track program success, and identify bottlenecks. Track KPIs and action items with default dashboards, as well as manage and monitor progress on key program activities with detailed reporting on tasks.
To learn more about OneTrust’s latest innovations helping organizations enable trust by design, visit https://onetrust.com/release/fall-2023
About OneTrust
OneTrust is the trust intelligence cloud platform organizations use to transform trust from an abstract concept into a measurable competitive advantage. Organizations globally use OneTrust to enable the responsible use of data while protecting the privacy rights of individuals, implement and report on their cyber security program, make their social impact goals a reality, and create a speak up culture of trust. Over 14,000 customers use OneTrust's technology, including half of the Global 2,000. OneTrust currently ranks #24 on the Forbes Cloud 100 list of top private cloud companies in the world and employs over 2,000 people in regions across North America, South America, Asia, Europe, and Australia.