IT Risk Management (ITRM) Reviews and Ratings
What are ITRM (IT Risk Management) Solutions?
The IT risk management (ITRM) market focuses on solutions that support the ITRM discipline through automating common workflows and requirements. For the purposes of defining this market, IT risks are risks within the scope and responsibility of the IT department. These include IT dependencies that create uncertainty in daily tactical business activities, and IT risk events resulting from inadequate or failed internal IT processes, people or systems, or from external events.
Product Listings
Filter by
Archer is a pioneer in risk management, delivering solutions for the heroes tasked with helping their organization deal with uncertainty. We enable better decision making with a technology platform to manage all types of risk. With more than 20 years of experience, Archer is solely dedicated to helping organizations manage risk, ensure compliance and meet emerging challenges such as ESG and operational resilience. Working with the largest pure risk management community globally with more than 1,200 customers of all sizes and industries, we help our customers not by building a wall around their business but by building a bridge to their next opportunity.
OneTrust enables the responsible use of data and AI. The OneTrust Platform simplifies the collection of data with consent and preferences, automates the governance of data with integrated risk management across privacy, security, IT/tech, third-party, and AI risk, and activates the responsible use of data by applying and enforcing data policies across the entire data estate and lifecycle.
Diligent provides governance, risk and compliance (GRC) SaaS, empowering more than 1 million users and 700,000 board members to clarify risk and elevate governance. With a worldwide reach, it serves an impressive array of users from varying sizes of organizations. The distinctive standpoint of Diligent is its commitment to provide leaders with interconnected perspectives on governance, risk, compliance, and ESG. This connected view is accomplished through their cutting-edge platform, which is designed to empower leaders to drive impact and enforce accountability effectively. It employs a talented and passionate team dedicated to shaping the future of the software industry. The company's headquarters are located in New York, but it also maintains offices in various locations such as Washington D.C., Galway, Budapest, Vancouver, Bengaluru, Singapore, and Sydney.
ServiceNow's cloud‑based platform and solutions help digitize and unify organizations so that they can find smarter, faster, better ways to make work flow. So employees and customers can be more connected, more innovative, and more agile.
NAVEX is a multinational company dedicated to developing risk and compliance software. The company focuses on strengthening risk management procedures in companies spanning various industries. NAVEX provides consolidated solutions that aid businesses in comprehending and supervising their risk, compliance, and ESG programs more efficiently. The firm integrates risk across multiple organizational sectors to enhance awareness, boost operational effectiveness, and support informed decision making. Conventionally, NAVEX aims to develop a technologically advanced platform that empowers businesses to predict and manage risks. They offer solutions for businesses to assess their risk and compliance situation, hence allowing them to govern their Risk Management and Compliance (GRC) programs smoothly and effectively. NAVEX is also devoted to fostering an equitable and inclusive work environment and is invested in safeguarding client interests and conserving finite resources.
SAFE is a unified platform to manage third-party and first-party cyber risk. With over 100+ API integrations available, SAFE’s AI-driven platform ingests data from a company's infrastructure and security tools to provide a real-time view of cyber risk in financial terms and automatically suggest security improvements based on its business impact. SAFE is purpose-built on open standards such as FAIR (FAIR-MAM, FAIR-CAM), MITRE ATT&CK and NIST CSF and delivers transparent and defensible results. SAFE elevates CISOs as indispensable partners to the business by helping to effectively prioritize and manage the cybersecurity risk at pace. SAFE empowers enterprises, boards, regulators and cyber insurance carriers to better understand cyber risk in an aggregated and granular manner.
Allgress is a company that provides solutions to enterprise risk, security, and compliance professionals. The main focus of the company is to manage risk posture efficiently. It uses cutting-edge visualization, automation, streamlined workflows, and the integration of existing data feeds to minimize the complexity and cost involved in risk management. The distinguishing feature of the company's solutions is that customers derive value in a short span of time, compared to other risk management solutions in the market.
RiskOptics is a company that aims to elevate risk management from a mechanical process to a strategic level. The company addresses the persistent problem of unseen and disconnected risk metrics in the mid-market sector. RiskOptics integrates compliance, cybersecurity, and IT risk activities, aligning them with a client's business objectives. With a focus on risk rather than just mere compliance, the company enables its clients to make well-informed decisions and turn risk into business opportunities. The overarching objective of RiskOptics is to create an environment where organizations fully comprehend and utilize risk to advance their most crucial objectives.
Axonius concentrates on providing solutions for cyber asset attack surface management (CAASM) and SaaS management. The company's central focus is on aiding its users in controlling complexity in their operations. It offers solutions that mitigate threats, manage risks, automate response actions, and support business strategy. Axonius’ software integrates with a variety of data sources to deliver a comprehensive inventory of assets, detect gaps, and automatically confirm and implement policies. The company's capabilities include coverage for a vast range of assets, encompassing devices, cloud assets, user accounts, and SaaS applications. Quick deployment and broad integration options are among the features that Axonius offers to its users.
IBM is a well-established entity focused on technology and development. The primary mission revolves around fostering technological growth and enhancing infrastructure, achieved through focused developments and consulting services. By encouraging inventiveness and innovation, it is geared towards facilitating the transition of theoretical ideas into practical realities, thus improving global functionalities. IBM brings about transformation by creating advanced solutions that reshape and redefine the world.
SAI360 is an established cloud provider that specializes in the integration of Governance, Risk and Compliance (GRC), Environment, Health and Safety (EHS), Sustainability and Learning. With its SAI360 platform, the company provides a variety of modules which can be adjusted to suit the needs of different organizations. This comprehensive approach aids organizations in their efforts to progress, create trust, comprehend their impact, and develop resilience. The company's primary location is in Chicago and it has a global presence with operations in various regions worldwide.
MetricStream offers Integrated Risk Management and GRC (Governance, Risk Management and Compliance) solutions to help businesses make better risk-aware choices. Its services connect governance, risk management and compliance throughout an organization. With three product lines – BusinessGRC, CyberGRC, and ESGRC – MetricStream aims to assist companies at every stage of their GRC journey. The company's headquarters are located in San Jose, California, and an operational and research center in Bangalore, India, with global operational support.
Balbix is an organization that offers solutions to identify and mitigate cybersecurity risks quickly. Balbix's approach involves the use of the Balbix Security Cloud platform. This platform processes data from an organization's security and IT tools, leading to a comprehensive understanding of the cybersecurity posture. It then builds a unified cyber risk model and offers risk reduction insights. The platform supports automated inventory of cloud and on-premise assets, continuous risk-based vulnerability management and the ability to quantify cyber risk. The aim is to facilitate data-backed cybersecurity decisions for executives and operational teams. Balbix is trusted by a broad spectrum of businesses and is designed to offer maximized automated workflows and reduced cyber risk.
LogicManager is focused on effective risk management in the contemporary See-Through Economy, where company reputation can be jeopardized instantly over social platforms. The company aids enterprises in anticipating future risks, maintaining their reputation, and augmenting their business performance through robust governance. Their enterprise risk management (ERM) software is designed to facilitate proactive risk management across businesses of various sizes and industries. Through its services, LogicManager aims to ensure organizations meet the expectations of various stakeholders within their purview, preparing for surprise events and ultimately contributing positively to the larger community.
Resolver operates in the field of risk management, working to transform it into Risk Intelligence. Collecting all risk data, the company evaluates it to uncover the true impact of every risk within a business. Using its Risk Intelligence Platform, Resolver explores the widespread effects of different types of risks—be it compliance, audit, incidents, or threats—and translates these impacts into measurable business metrics. This allows for persuasive communication of risk in business terms. The firm's software equips businesses to respond aptly to regulatory and market changes, derive insights from security and risk incidents, and streamline risk operations across the organization. It works under the operation of Kroll, which supplies proprietary data, technology, and insights to help clients navigate complex risk, governance, and growth demands. Kroll's solutions aim to provide a competitive edge, empowering swift, intelligent, and sustainable decisions.
Censinet is a corporation that specializes in third-party risk management, specifically targeting the healthcare sector. It addresses the challenge of managing threats to patient care within a rapidly expanding ecosystem of vendors. The Censinet Platform is known for its unique One-click Assessment capabilities and Digital Vendor Catalog. These features considerably decrease the time it takes to evaluate vendor risk, bring efficiency to workflows, and offer continuous, real-time insights into each vendor's changing risk profile.
Sevco is an exposure assessment platform that integrates and centralizes asset data from siloed tools to provide real-time visibility into the devices, identities, software, vulnerabilities that make up an organization's attack surface. Sevco enriches this asset data with threat intelligence and business context to provide the intelligence security teams require to confidently assess and prioritize risks, automate remediation workflows, and validate remediation efforts in order to mitigate threats.
Panaseer is an enterprise specializing in cybersecurity automation and data analytics, primarily aimed at helping businesses avert avoidable security breaches. The enterprise works to guarantee operative deployment of security controls, thus optimizing security investments and resources. The central issue Panaseer addresses is control failures in cybersecurity, cited by a vast proportion of establishments as a common reason for unforeseen security incidents which outmaneuver established controls. Panaseer's Continuous Controls Monitoring platform delivers a comprehensive view of security controls and provides metrics as well as measures guidance concurrent with standard frameworks. Lastly, Panaseer's work also involves maximizing the efficiency of established security systems, ensuring businesses obtain noteworthy returns on their security investments.
JupiterOne is the asset, attack surface and exposure management platform for security and IT, that empowers organizations to prioritize and remediate what matters most. Customers use the JupiterOne platform to perform cyber asset inventory, manage their attack surface, respond to incidents, hunt for the latest exploits and continuously monitor their exposure with complete visibility across assets and relationships.
Excelledia is a management consulting company with operational centers in the UK, UAE, Qatar, KSA, and India. The company offers organizational transformations and business strategies. Excelledia provides knowledge in people management, process improvement, and technology consultancy services. It conducts various training and assessments to improve workforce performance, succession planning, and organizational culture management. It also offers consulting, advisory, and audit services, focusing on ISO management systems, process and performance audits, and risk advisory. Excelledia also utilizes different technological advancements such as AI, Machine Learning, Deep Learning, and Automation for business transformation, data analytics, and variegated software solutions. Its services are promoted through different partner networks positioned in Europe and Africa regions.