Share your experience using Panorays

The easiest route - we'll conduct a 15 minute phone interview and write up the review for you.

Use our online form to submit your review. It's quick and you can post anonymously.

Your review helps others learn about this solution
The PeerSpot community is built upon trust and sharing with peers.
It's good for your career
In today's digital world, your review shows you have valuable expertise.
You can influence the market
Vendors read their reviews and make improvements based on your feedback.
Examples of the 85,000+ reviews on PeerSpot:

Group Head of Risk at a retailer with 1,001-5,000 employees
Real User
Top 10
Costly solution that may not guarantee ROI, but remains effective in IT risk management
Pros and Cons
  • "As a solution for IT risks, it is a very good product."
  • "I haven't seen any return on investment using the solution. If I had the opportunity, I would use a different solution."

What is our primary use case?

It was used to manage IT and control risks, specifically around network infrastructure and particular assets.

What is most valuable?

As a solution for IT risks, it is a very good product. I think it's structured in a way that makes it good to track IT-specific risks and controls.

What needs improvement?

Speaking about the room for improvement in the solution, I mainly feel that it is not a GRC tool. So, I think that it is more of an IT risk management tool. Basically, it's very good at IT business management. It's not a good tool for governance risk and compliance beyond IT risk management. If you want to use it for business, financial, reputational, health and safety risks, or any other type of risk relevant to your industry or your organization, it's not ideal, and you probably have to get a different system. In short, it does risk management better than most generic GRP tools. However, most of the good GRC tools that are business focused also do IT risk management well enough, which is why OneTrust GRC is not a good enough solution by itself.

In future releases, the solution should work over its ability to manage business risks by incorporating something like an enterprise risk management module.

For how long have I used the solution?

I used OneTrust GRC six months ago. Also, I am a customer of the solution who has used it for three years.

What do I think about the stability of the solution?

I rate the solution's stability an eight on a scale, with one being low stability and ten being high.

What do I think about the scalability of the solution?

I rate the solution's scalability an eight on a scale, with one being low scalability and ten being high. Also, 200 people are using the solution.

How are customer service and support?

I didn't contact the technical support team, and I can't rate them.

Which solution did I use previously and why did I switch?

Previously, I tried different ones like ServiceNow and several other product lines. Instead of having to choose one, we were looking for alternatives from an IT risk management point of view and found that there were several different tools for businesses. In my new organization, we no longer use OneTrust GRC. Also, I would not recommend my current organization to use OneTrust GRC.

How was the initial setup?

I rate the initial setup a seven on a scale where one is difficult, and ten is easy for IT risk management. For business risk management, I rate it a three. So, the rating depends on what you are using the solution for in your organization.

The deployment process was completed before I joined the organization. In our organization, we require around two people to maintain the solution.

What was our ROI?

I haven't seen any return on investment using the solution. If I had the opportunity, I would use a different solution. This is because the use cases for the solution are too narrow.

What's my experience with pricing, setup cost, and licensing?

On a scale from one to ten, where one is cheap, and ten is too expensive, I rate the solution a seven since it falls under the pricey side. Our company was making a yearly payment of 250 for the solution's licensing part. Also, there were no additional charges to be paid other than the standard licensing fees. However, the solution's price depends on the modules that one selects.

What other advice do I have?

I would tell those planning to use the solution that they make sure that they are comfortable with the solution and are not duplicating their efforts elsewhere in the business since it would give them the ability to manage risk in all of the areas that they want to manage using the solution. Overall, I rate the solution a five out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Compliance Analyst at a computer software company with 1,001-5,000 employees
Real User
Implements data privacy with good pricing and support
Pros and Cons
  • "We have data from Jira regarding addiction related to Europe as well as California. Additionally, we have data related to the Indian Data Protection Bill. Therefore, GDPR compliance is highly beneficial."
  • "There are several areas for improvement. One is the integration capability. Connecting various DSAR systems can be time-consuming if a single integration takes months to complete."

What is our primary use case?

We are using OneTrust to implement data privacy within our organization.

How has it helped my organization?

We have data from Jira regarding addiction related to Europe as well as California. Additionally, we have data related to the Indian Data Protection Bill. Therefore, GDPR compliance is highly beneficial. The CPA also benefits from this. Data subjects are granted specific rights, known as DSR, making DSI crucial. With OneTrust, communication with data subjects is streamlined, allowing them to make requests, which we then process and fulfill using Alpha OneTrust. If a supervisory authority requests documentation from our company, we prepare Article 30 documents.

What is most valuable?

Everything is interconnected. While it might seem overwhelming to select specific digital options, each feature offers benefits. They provide extensive settings and details.

What needs improvement?

There are several areas for improvement. One is the integration capability. Connecting various DSAR systems can be time-consuming if a single integration takes months to complete. This integration challenge becomes more pronounced as data volumes grow and spread across different systems. One potential solution could be dedicating resources to support integration efforts, preferably individuals familiar with the OneTrust platform and the systems it needs to integrate. This approach could streamline the integration process and mitigate potential missteps, even for non-technical personnel.

For how long have I used the solution?

I have been using OneTrust GRC for almost two and a half years.

What do I think about the stability of the solution?

If I'm in a meeting and presenting somebody on OneTrust. It takes some time to load from one page to another page.

I rate the solution's stability an eight out of ten.

What do I think about the scalability of the solution?

Scalability is not an issue.

How are customer service and support?

Technical support is good. Whatever knowledge they have, they are providing us. They come and perform the things we want exactly. We are in between the support of OneTrust and ServiceNow. Each time, we have to contact OneTrust, then the respective system owner. The process could become better than it is now.

How would you rate customer service and support?

Positive

What's my experience with pricing, setup cost, and licensing?

If we use a particular module and find it very beneficial, then it is a good value for the price. There have been instances where we haven't used some modules despite paying for them last year. The pricing is reasonable, but we need to ensure we're maximizing the value of what we're paying for.

What other advice do I have?

OneTrust GRC integration can present some challenges, particularly for those without a technical background. It involves instances that may require some knowledge. Connectivity issues might arise, leading to disruptions. Despite these hurdles, efforts are being made to address and manage these challenges more efficiently.

I recommend the solution because it is cheap and valuable. Also, companies are becoming more aware of privacy. Privacy is directly proportional to these tools. OneTrust provides free certifications.

Overall, I rate the solution a nine out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Flag as inappropriate