Trustero Intelligence (TI)

Trustero Intelligence (TI) Product Guide

How to get the most out of TI, Trustero’s AI chat feature

1. Overview

  • What It Is –  interactive chat in the Trustero Platform that enables you to get fast, accurate answers to GRC questions with proof.
  • Why It Matters – the only AI chat solution that searches across all of your GRC data to answer questions while also citing sources.

2. How It Works

  • Chat with TI the way you do with any AI chatbot. It will reply with details and at the bottom of each response it will contain links to the information it relied on to create the response (e.g., controls or evidence). You can also control which data will be used to create the responses by configuring the context for a question. By editing the context you can include or exclude, policies, controls, evidence, vendors, etc.
  • You can ask a single question or multiple questions. Follow up questions appear in the thread just like any AI chat bot. Create new threads to explore new topics. Chats are visible to other platform users by default. The owner of the thread can make them private at any time.
  • TI relies on data that’s in your account to answer questions. While no one data type is required, the more you add, the more complete and accurate the answers will be. For more info on adding this data, see the quick start guide.

3. Step-by-Step Instructions

    • Navigation Path: navigate to the Trustero Intelligence icon in the main menu
    • Configure Context: control which data is or is not part of responses 
    • Control visibility: choose private or public-to-your-org chat visibility
  • Upload some KB documents: in addition to being able to ask questions about data that’s already in your account, you can upload additional documents that can be used to answer questions. 

4. Common Use Case Examples:

  1. For GRC, InfoSec and Privacy teams: TI acts like an expert on all of the data in the Trustero platform. Want to know when the last time you ran a disaster recovery test or if any laptops have unencrypted drives? TI can do that. It is very good at finding GRC needles in haystacks of policy documents and evidence. If a policy says it or a piece of evidence contains it, TI can find it. 
  2. For control owners in IT/DevOps/Engineering/HR or other non-GRC functions:
    1. Control operationalization guidance - how to put a control into practice.
    2. Explaining GRC concepts - it’s knowledgeable about general GRC concepts. 

    See TI Sample Questions for more ideas on questions TI can answer for you.

    See Policy Design Assessment for advanced functionality available within the chat interface.