ProcessUnity is a cloud-based solutions provider helping organizations automate their risk and compliance programs. By offering highly configurable, user-friendly tools, the company aims to drastically reduce manual administrative tasks. As a Software-as-a-Service technology, ProductUnity is designed to deploy quickly with minimal effort from IT resources. The technology aims to deliver faster, improved outcomes with scalability to accommodate the growth of risk governance and compliance programs. The suite of applications provided by ProcessUnity includes Third-Party Risk Management, Cybersecurity Program Management, Policy and Procedure Management, Enterprise Risk Management, Regulatory Compliance Management, and Product and Service Offer Management. The company also emphasizes the importance of creating and nurturing a diverse and inclusive workplace.
Do You Manage Peer Insights at ProcessUnity?
Access Vendor Portal to update and manage your profile.
GRX provides sophisticated risk models and threat intelligence with excellent mapping to frameworks and threat profiles. TVR provides searchable, real time vulnerability data enriched with CVSS scoring from NISD NVD, Risk Rule alerts, mapping to 4th party products via CPE mapping to CVE. TVR allows us to quickly assess our entire third party relationship in GRX portfolio and determine, which third parties are vulnerable to the cyber threat and then allows us to send out a tailored questionnaire in minutes. This saves us a vast amount of time and effort in assessing third parties that are less likely to be impacted and allows us to focus on the things that matter most. The issue/risk workflow allows us to track and manage any risk to closure with an excellent audit trail.
ProcessUnity is fairly easy to configure for everyday needs. Updating assessment questionnaire is straightforward, setting up automated email notifications and basic customizations like adding options to dropdown lists are simple to manage.
Standout features include: Simplicity for our internal stakeholders that engage with the platform to onboard their vendors into the program. We operate in 120 countries and at different paces depending on customer requirements. The way in which we have setup the program allows our business stakeholders to continue with service delivery while due diligence activities proceed simultaneously. Centralization of due diligence processes into one platform has also been to the benefit of our risk function owners. This has provided a single source of truth approach, where due diligence questionnaires and assessments across multiple risk domains are performed, reviewed and vendor engagement is in one place. Reporting mechanisms and capabilities that are interactive and live allow for ease of information sharing with our stakeholders. Reporting capabilities can be adapted and affected in minimal time. Production of new reports takes minutes.
The validation time of the GRX assessment process. The business partners need to accelerate their validation time, making use of AI tools to speed the process up. Without the TPRM platform, it more challenging to tailor the assessment questionnaire. So for example, there are some data protection questions that our customers would have to answer as part of their TPRM questionnaire, resulting in duplication.
Basic enhancements often don't get resolved in a timely manner, AI functionality is immature and does not yet deliver meaningful value or efficiency gains. Overall, innovation feels slow and the platform lacks clear forward momentum compared to peers in the space.
MS Word summary reports that can be extracted from the platform are difficult to update and finding the source property can be confusing. From an administrative perspective, selecting the wrong option when progressing through workflows cannot be undone, meaning the admin personnel may have to cancel and start again. Some properties will create unintended outcomes if incorrectly selected. Very infrequently the platform stops at a loading screen for an unreasonable time. Not sure what could be the cause of this if it's from our end or ProcessUnity.