Show rating breakdown
Save to My Lists
Claimed
Claimed

ZenGRC Reviews & Product Details - Page 8

ZenGRC Overview

What is ZenGRC?

ZenGRC offers an established solution to elevate your company's risk and compliance program to the highest infosec standards. The cloud-based SaaS solution fits your existing GRC program and also evolves to guide you throughout your maturity roadmap. With ZenGRC as the central platform for your organization's entire infosec ecosystem, you can achieve continuous monitoring and efficient audit management capabilities, as well as customizable, end-to-end risk management that's built-in — not bolted on. Companies from SMB all the way to Enterprise use ZenGRC for... — Minimized manual effort through automation — Shortened, simplified audit cycles — Risk management that’s built-in—not bolted on — Increased visibility and reporting with dashboards — Direct integrations with ServiceNow, AWS, Qualys, Slack, JIRA, and more.

ZenGRC Details
Discussions
ZenGRC Community
Languages Supported
English
Show LessShow More
Product Description

ZenGRC is a user-friendly GRC software designed to make compliance easy for nimble enterprises.

How do you position yourself against your competitors?

Our intuitive dashboards, pre-built templates, and built-in risk management features easily solve critical problems at scale. ZenGRC + ZenConnect provide a holistic view of your applications containing critical data within a centralized, cloud-based solution, allowing you to continuously monitor your data and mitigate risk in real-time. With dedicated onboarding specialists, customer success managers, and GRC experts you’ll be up and running in weeks—not months.


Seller Details
Seller
Zengrc
Year Founded
2009
HQ Location
San Francisco, CA
Twitter
@riskoptics
603 Twitter followers
LinkedIn® Page
www.linkedin.com
70 employees on LinkedIn®

Ani B.
AB
Overview Provided by:
Founder | CEO at Bisaria & Co.

Recent ZenGRC Reviews

Verified User
A
Verified UserEnterprise (> 1000 emp.)
3.5 out of 5
"Looking for a ISO and NIST GRC tool?"
Zen is very user friendly when conducting ISO 27001 audits for internal reviews.
Verified User
A
Verified UserMid-Market (51-1000 emp.)
4.0 out of 5
"Great GRC tool for mid size companies!"
The tool is very user-friendly, customizable.
Kert John D.
KD
Kert John D.Small-Business (50 or fewer emp.)
5.0 out of 5
"GRC "easy button""
Being newer to leveraging a GRC tool, what attracted me most to ZenGRC was the functionality and manageability versus the others players in that sp...
Security Badge
This seller hasn't added their security information yet. Let them know that you'd like them to add it.
0 people requested security information

ZenGRC Media

ZenGRC Demo - Compliance Dashboard
ZenGRC Compliance Dashboard
ZenGRC Demo - System of Record Detail
ZenGRC System of Record Detail
ZenGRC Demo - Audit Status Dashboard
ZenGRC Audit Status Dashboard
ZenGRC Demo - Risk Assessment
ZenGRC Risk Assessment
ZenGRC Demo - Heat Map
ZenGRC Heat Map
ZenGRC Demo - InfoSec Dashboard
ZenGRC InfoSec Dasboard
Answer a few questions to help the ZenGRC community
Have you used ZenGRC before?
Yes

93 ZenGRC Reviews

4.4 out of 5
The next elements are filters and will change the displayed results once they are selected.
Search reviews
Popular Mentions
The next elements are radio elements and sort the displayed results by the item selected and will update the results displayed.
Hide FiltersMore Filters
The next elements are filters and will change the displayed results once they are selected.
The next elements are filters and will change the displayed results once they are selected.
93 ZenGRC Reviews
4.4 out of 5
93 ZenGRC Reviews
4.4 out of 5

Overall Review Sentiment for ZenGRCQuestion

Time to Implement
<1 day
>12 months
Return on Investment
<6 months
48+ months
Ease of Setup
0 (Difficult)
10 (Easy)
Log In
Want to see more insights from verified reviewers?
Log in to view review sentiment.
G2 reviews are authentic and verified.
Verified User in Computer Software
AC
Mid-Market(51-1000 emp.)
More Options
Validated Reviewer
Verified Current User
Review source: Organic
What do you like best about ZenGRC?

Zen is very user friendly and the support staff is superb. Review collected by and hosted on G2.com.

What do you dislike about ZenGRC?

The only area I wish was easier was creating an audit. Also, it would be helpful to clone an already created audit. Review collected by and hosted on G2.com.

Recommendations to others considering ZenGRC:

Our audit firm says it is the best tool they have used during an audit. The ease of use makes the audit process run smoothly. Review collected by and hosted on G2.com.

What problems is ZenGRC solving and how is that benefiting you?

We are managing all audits with ZenGRC. We are also tracking incidents, managing vendors, and monitoring risks. Review collected by and hosted on G2.com.

Rohit D.
RD
Manager
Small-Business(50 or fewer emp.)
More Options
Validated Reviewer
Review source: Organic
What do you like best about ZenGRC?

Easy initial set up with already setup frameworks and mapping of controls. I can use it with very little configuration and workflow changes Review collected by and hosted on G2.com.

What do you dislike about ZenGRC?

Reports could be more detailed and technical user friendly.

From user administration, there could be more options to restrict or grant access Review collected by and hosted on G2.com.

What problems is ZenGRC solving and how is that benefiting you?

My customer was in process of establishing common control frameworks. ZenGRC made it really easy out of the box to set up frameworks and conduct audits Review collected by and hosted on G2.com.

Verified User in Financial Services
AF
Mid-Market(51-1000 emp.)
More Options
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about ZenGRC?

ZenGRC has been a great tool for our organization. Onboarding was simple as there was great guidance by the Reciprocity team, Importing SOC 2 and ISO 27001 standards was seamless, creating requests (and repeating requests) has helped keep our team on track, and managing risks are vital parts of our compliance sector. ZenGRC has made these formally tricky but integral parts of our organization seamless. Review collected by and hosted on G2.com.

What do you dislike about ZenGRC?

The use of dashboards is something our organization utilizes across a multitude of applications and I don't find the compliance dashboard particularly useful for our purposes. That being said it does show what it needs to. Review collected by and hosted on G2.com.

Recommendations to others considering ZenGRC:

ZenGRC is a powerful tool which can make your compliance team work more effectively which having a centralized place for audits, vendors, and risks. Review collected by and hosted on G2.com.

What problems is ZenGRC solving and how is that benefiting you?

ZenGRC has offered us the ability to simply track audit requests and tasks, store and manage our risks while offering visual representations of where we stand, manage vendors by sending standard questionnaires, and have a tool to store our audits for previous years where evidence lives indefinitely. Review collected by and hosted on G2.com.

RB
Mid-Market(51-1000 emp.)
More Options
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about ZenGRC?

The flexibility to manage multiple compliance programs, audits and risk management needs Review collected by and hosted on G2.com.

What do you dislike about ZenGRC?

The multiple mapping options can confuse the links between objects, controls, risks, and programs. Review collected by and hosted on G2.com.

What problems is ZenGRC solving and how is that benefiting you?

The ability to direct and analyze audit and compliance needs, including the ability to connect business and operational factors within a single correspondent management interface, addresses the difficulties inherent in the ongoing risk and audit management process. Review collected by and hosted on G2.com.

LK
MIS CRM
Mid-Market(51-1000 emp.)
More Options
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about ZenGRC?

I love the fact that most things are automated and having a means to track when tasks get done, when vendor questionnaires or due diligence is done, and that I don't have to use spreadsheets nearly as often or at all! Between tasks on schedules that send emails when things are due, full history tracking of changes to our policies and processes, vendor questionnaires, having a functioning and easier to manage risk and vulnerability register, it just makes things much easier than having to track everything in files and directories and Office365 emails and tasks. I love that the staff imported our compliance programs with every section and objective, and then uploaded a Secure Controls Framework that we customized to match our company, and fulfill our compliance needs so seamlessly. Auditing functionality is amazing too as we can actually see where we stand in our programs and what needs to be done. Review collected by and hosted on G2.com.

What do you dislike about ZenGRC?

The only downside I can think of is being the cost, for what we do, it cost about 4-5k a month. Though we do get excellent support and it's necessary being the only GRC employee at our company. Review collected by and hosted on G2.com.

Recommendations to others considering ZenGRC:

It's the best (albeit most expensive) software we tried. But for me the performance was worth the cost. At the very least just demo the product and ask any question you have, they had an answer for everything I could throw at them and sold me on it. Don't regret it. Review collected by and hosted on G2.com.

What problems is ZenGRC solving and how is that benefiting you?

Solving problems of things getting lost in the fog. Such as maintaining email strings and following up with people personally or double checking everyone's spreadsheets within a ton of different directories. ZenGRC helps actually organize and raise efficiency to where I am no longer spending most of my time trying to find things or fill out a spreadsheet to say I did a Firewall review. The vendor questionnaires are awesome for following up with vendors for risk assessments. Having a risk, vulnerability, problem and a ton of different registers help keep track of everything. Being able to assign tasks to literally anything, and map objects to literally anything is amazing. Such as having a control that says that we have an access control policy, well just map the access control directly to the control and there's the proof for the audit.

Do a demo with them, it was the best we demo'd out of 5 different providers. Ease of use is outstanding. Review collected by and hosted on G2.com.

Verified User in Information Technology and Services
AI
Mid-Market(51-1000 emp.)
More Options
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about ZenGRC?

The ZenGRC portal not only comes with a well-made application but great customer service as well. Our risk & compliance program is much more streamlined now that everything is accessible in one tool, and onboarding the team to the program is made simple through their online education system. Review collected by and hosted on G2.com.

What do you dislike about ZenGRC?

It would be nice to have more customizability in the application. Not everyone wants to use the wording provided in the dropdowns in certain tabs. Having the ability to change dropdown text would be a great addition. Review collected by and hosted on G2.com.

What problems is ZenGRC solving and how is that benefiting you?

Our Risk & Compliance program was scattered through multiple locations and involved a lot of heavy searching. Onboarding new personnel would not have been easy. ZenGRC allowed us to centralize the program and provides the user training for us. The controls that were uploaded by the ZenGRC team are a great help too when mapping controls and preparing for audits. Review collected by and hosted on G2.com.

MB
Sharepoint
Mid-Market(51-1000 emp.)
More Options
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about ZenGRC?

I can keep track of the requests for the audit in my To Do list, auditors can ask questions, get my response and have a conversation trail on the request utilizing comments. The commenting record creates a history and I do not need to hunt through my email. Review collected by and hosted on G2.com.

What do you dislike about ZenGRC?

I would like the ability to rearrange the columns in my display. When the verifier stage is reached, we often have more than one person assigned. It would be nice to have the function to turn on letting each verifier select evidence acceptance before changing to Completed status. Review collected by and hosted on G2.com.

What problems is ZenGRC solving and how is that benefiting you?

Tying the evidence to the request, in the past we used a file repository to store the evidence and it was not always easy to tie it back to the request for the auditors. Better transparency on the status of audit requests in all stages. Review collected by and hosted on G2.com.

Verified User in Retail
AR
Enterprise(> 1000 emp.)
More Options
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about ZenGRC?

ZenGRC empowers us to effectively manage audits across our entire organization. Review collected by and hosted on G2.com.

What do you dislike about ZenGRC?

It would be helpful to be able to navigate to and view info from mapped objects without having to load a new page. I am often looking for something as reference to complete or comment on a request or assessment, and once I find it I have navigated away from that page. The workaround is multiple tabs, but that can be a bit cumbersome. Review collected by and hosted on G2.com.

What problems is ZenGRC solving and how is that benefiting you?

The initial problem we were trying to solve with ZenGRC was to complete our annual PCI self-assessment, but as we got the platform up and running, we immediately recognized that it can do a lot more and have already begun taking advantage of that potential. Review collected by and hosted on G2.com.

Verified User in Computer Software
AC
Enterprise(> 1000 emp.)
More Options
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about ZenGRC?

We like the ease of use & the simplicity of the platform. Compared to its competitors, ZenGRC is much easier to use and better suited for more agile compliance programs. Review collected by and hosted on G2.com.

What do you dislike about ZenGRC?

Some basic featuring continues to be ignored within ZenGRC despite a robust and fast-moving roadmap into the future. We’d like to see simple changes like customization of dashboards, reordering & grouping of attributes in an object record, and a more detailed API. Review collected by and hosted on G2.com.

What problems is ZenGRC solving and how is that benefiting you?

With ZenGRC we’re realizing the biggest benefit in centralizing our listing of systems & vendors, and relating those objects to each other to understand where data is stored and flows in our organization. Review collected by and hosted on G2.com.

Verified User in Information Services
AI
Mid-Market(51-1000 emp.)
More Options
Validated Reviewer
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about ZenGRC?

ZenGRC is a great tool for the mid-size business that's on it's way up. The system itself is easy to use and provides room to grow. Reciprocity has moved to a new continuous release schedule, which provides new features on a regular basis. They are looking to improve their system as quickly as possible. The system allows for great flexibility to follow industry best practices or creating your own program. Review collected by and hosted on G2.com.

What do you dislike about ZenGRC?

The reporting functionality is limited, however, there is a revamp coming soon to address this issue. Review collected by and hosted on G2.com.

What problems is ZenGRC solving and how is that benefiting you?

Continuous monitoring, security compliance, risk register, one source of truth for all things GRC Review collected by and hosted on G2.com.