Zen is very user friendly and the support staff is superb. Review collected by and hosted on G2.com.
The only area I wish was easier was creating an audit. Also, it would be helpful to clone an already created audit. Review collected by and hosted on G2.com.
Easy initial set up with already setup frameworks and mapping of controls. I can use it with very little configuration and workflow changes Review collected by and hosted on G2.com.
Reports could be more detailed and technical user friendly.
From user administration, there could be more options to restrict or grant access Review collected by and hosted on G2.com.
ZenGRC has been a great tool for our organization. Onboarding was simple as there was great guidance by the Reciprocity team, Importing SOC 2 and ISO 27001 standards was seamless, creating requests (and repeating requests) has helped keep our team on track, and managing risks are vital parts of our compliance sector. ZenGRC has made these formally tricky but integral parts of our organization seamless. Review collected by and hosted on G2.com.
The use of dashboards is something our organization utilizes across a multitude of applications and I don't find the compliance dashboard particularly useful for our purposes. That being said it does show what it needs to. Review collected by and hosted on G2.com.
The flexibility to manage multiple compliance programs, audits and risk management needs Review collected by and hosted on G2.com.
The multiple mapping options can confuse the links between objects, controls, risks, and programs. Review collected by and hosted on G2.com.
I love the fact that most things are automated and having a means to track when tasks get done, when vendor questionnaires or due diligence is done, and that I don't have to use spreadsheets nearly as often or at all! Between tasks on schedules that send emails when things are due, full history tracking of changes to our policies and processes, vendor questionnaires, having a functioning and easier to manage risk and vulnerability register, it just makes things much easier than having to track everything in files and directories and Office365 emails and tasks. I love that the staff imported our compliance programs with every section and objective, and then uploaded a Secure Controls Framework that we customized to match our company, and fulfill our compliance needs so seamlessly. Auditing functionality is amazing too as we can actually see where we stand in our programs and what needs to be done. Review collected by and hosted on G2.com.
The only downside I can think of is being the cost, for what we do, it cost about 4-5k a month. Though we do get excellent support and it's necessary being the only GRC employee at our company. Review collected by and hosted on G2.com.
The ZenGRC portal not only comes with a well-made application but great customer service as well. Our risk & compliance program is much more streamlined now that everything is accessible in one tool, and onboarding the team to the program is made simple through their online education system. Review collected by and hosted on G2.com.
It would be nice to have more customizability in the application. Not everyone wants to use the wording provided in the dropdowns in certain tabs. Having the ability to change dropdown text would be a great addition. Review collected by and hosted on G2.com.
I can keep track of the requests for the audit in my To Do list, auditors can ask questions, get my response and have a conversation trail on the request utilizing comments. The commenting record creates a history and I do not need to hunt through my email. Review collected by and hosted on G2.com.
I would like the ability to rearrange the columns in my display. When the verifier stage is reached, we often have more than one person assigned. It would be nice to have the function to turn on letting each verifier select evidence acceptance before changing to Completed status. Review collected by and hosted on G2.com.
ZenGRC empowers us to effectively manage audits across our entire organization. Review collected by and hosted on G2.com.
It would be helpful to be able to navigate to and view info from mapped objects without having to load a new page. I am often looking for something as reference to complete or comment on a request or assessment, and once I find it I have navigated away from that page. The workaround is multiple tabs, but that can be a bit cumbersome. Review collected by and hosted on G2.com.
We like the ease of use & the simplicity of the platform. Compared to its competitors, ZenGRC is much easier to use and better suited for more agile compliance programs. Review collected by and hosted on G2.com.
Some basic featuring continues to be ignored within ZenGRC despite a robust and fast-moving roadmap into the future. We’d like to see simple changes like customization of dashboards, reordering & grouping of attributes in an object record, and a more detailed API. Review collected by and hosted on G2.com.
ZenGRC is a great tool for the mid-size business that's on it's way up. The system itself is easy to use and provides room to grow. Reciprocity has moved to a new continuous release schedule, which provides new features on a regular basis. They are looking to improve their system as quickly as possible. The system allows for great flexibility to follow industry best practices or creating your own program. Review collected by and hosted on G2.com.
The reporting functionality is limited, however, there is a revamp coming soon to address this issue. Review collected by and hosted on G2.com.