TrustCloud launches Application Assurance: AI-native continuous control monitoring for enterprises. Read more →

Hybrid Data Fabric

Estimated reading: 6 minutes 5337 views

Overview

Hybrid Data Fabric aggregates and normalizes feeds of structured and unstructured data to build an assurance, resilience, and GRC data lake

TrustCloud Hybrid Data Fabric aggregates feeds from your cloud, on-premises and bespoke apps and combines them with inventories from your security tools and document repos to continuously assess your control effectiveness, customer commitments, policy governance, risk mitigation and compliance assurance across your entire IT environment.

Hybrid data fabric 01
Hybrid data fabric

What are integrations?

Integrations are the API-based connections that link TrustCloud with the tools your teams already use, from cloud providers and security platforms to business systems. They allow TrustCloud to automatically gather audit data, monitor controls, and assess risks without interrupting your workflows.

In short: Integrations turn your existing systems into a unified, intelligent source of truth for compliance, security, and risk operations.

Meet TrustCloud’s Hybrid Data Fabric

Hybrid Data Fabric is the security and GRC data lake that aggregates data from your internal SaaS, cloud, IT, and on‑premises systems. It continuously consolidates configurations, logs, inventories, and metrics from across your technology stack into a single, standardized data model.

This unified data layer is what powers TrustCloud’s automation, helping you:

  1. Automatically collect and verify evidence
  2. Continuously test and monitor controls
  3. Assess and manage risks in real time
  4. Stay continuously audit-ready.

Hybrid Data Fabric enables you to aggregate structured and unstructured data at scale so that you can evaluate all your GRC artifacts and replace point-in-time, subjective assessments with continuous, data-driven assurance.

How it works

  1. Connect your systems through secure, read‑only integrations.
  2. Ingest configuration, log, and inventory data via APIs or lightweight scripts.
  3. Normalize the incoming streams into a structured, GRC-ready data model.
  4. Map everything into your program’s control graph to automate control testing and assurance workflows.

Data collected through these integrations flows into TrustCloud’s assurance data lake, where AI and rules engines continuously monitor, test, and report on your compliance and risk posture.

Security First: All integrations are read‑oriented and require only the minimum permissions necessary. TrustCloud never modifies your external systems.

Key components of TrustCloud’s hybrid data fabric

Data feeds from your application, infrastructure, and security tooling landscape are programmatically gathered to help you meet your control effectiveness, customer commitments, policy governance, risk mitigation and compliance assurance.

API-based Integrations into 100+ cloud and SaaS providers

TrustCloud has developed API-based integrations with a large and growing number of third party cloud and SaaS vendors to programmatically pull security and risk data. These integrations include:

  1. Cloud infrastructure such as AWS, Azure, and GCP
  2. Identity systems such Okta, PingIdentity, IAM, Azure AD, etc.
  3. Security tools such as CrowdStrike, Wiz, Snyk, Tenable, Qualys, Intruder etc.
  4. CI/CD, source code, logging providers such as BuildKite, Jenkins, Github, Gitlab, Datadog, Splunk etc.
  5. Business systems such as Workday, Salesforce, ServiceNow, SAP, etc.

You can set up all these feeds using configuration-based API connections to the source system. You can find the complete list of integrations supported by TrustCloud here:

https://community.trustcloud.ai/docs/trustcloud/integrations/

New integrations

The Hybrid Data Fabric is designed to quickly integrate with any third-party provider. The TrustCloud team can build out these data feeds for customers at no additional cost.

There are 3 key factors that enable quick creation of new data feeds for customers:

  1. Availability of a public, documented API
  2. Availability of a sandbox instance from the customer to test out the new integration
  3. Category / Purpose of the provider: if TrustCloud already integrates with other providers in the same category, then a new integration and subsequent data feed creation and control scoping / mapping gets accelerated

In most cases, new integrations can be deployed within 4-6 weeks.

Push-based data feeds for hybrid, on-prem, or custom applications

For internal, customized, or on-prem applications and systems, the Hybrid Data Fabric can synchronize data from the source system using a push-based model, where data can be programmatically pushed to TrustCloud via API. 

TrustCloud has a public, documented API layer to aggregate these feeds and a library / SDK to streamline the development of the feed scripts. These feeds can be created and maintained by the customer or by TrustCloud as a managed service.

Data normalization and mapping to the control graph

For each ingested feed, the Hybrid Data Fabric normalizes it to create structured data that is relevant for security and GRC workflows.

Integrations

These normalized inventories can then be mapped into the customer’s Control Graph, which creates a 360-degree view of each application, topography, security tools, risks, controls, etc.

The Hybrid Data Fabric interfaces with a composable rules engine that allows you to create custom tests that can be leveraged to automate KRIs and controls driving continuous testing across IT applications.

TrustCloud includes 100s of pre-built out-of-the-box rules that dynamically scope specific types of feeds to control definitions in a customer’s program. It also enables tests that combine several different feeds with custom field mappings (for example, mapping from CMDB records to assets or servers or combining source repositories with CI/CD pipelines) to be programmatically created using the testing engine.

The mapping of the customer’s security and GRC data lake to the Control Graph feeds assurance workflows powered by APIs and AI.

My Integrations

View and manage active data feeds powering your automated tests.

  1. Navigate to your TrustCloud program.
  2. Click Integrations in the left-hand navigation, then select My Integrations.
    My Integrations

The unconfigured integrations list detected providers (from your systems) not yet connected; setup adds automated tests automatically.

  1. Click Setup Integration for step-by-step connection guidance.
  2. Select View Available Integrations to explore more options.

Available Integrations

Discover the full catalog of 100+ providers for your Hybrid Data Fabric.

  1. Go to Integrations > Available Integrations in the left navigation.
    Available Integrations
  2. Click “View Details” for data collected, permissions, and setup steps per integration.

Use this to expand evidence sources beyond manual uploads.

Connected Apps

Extend Hybrid Data Fabric data into your workflows via CRM and communication tools.

Connected Apps

  1. Connect Slack for task notifications and channel alerts.
  2. Link Jira for bidirectional task syncing.
  3. Integrate Salesforce or HubSpot (via TrustShare) for revenue-aligned trust reporting.​ And so on.

Learn more about TrustHQ connections.

Integration data models

Each supported integration follows a structured data model that defines how fields, attributes, and inventories are mapped to TrustCloud’s assurance data lake.

These models ensure consistency, traceability, and interoperability across all your connected systems.

Why it matters

Hybrid Data Fabric gives you clarity, control, and confidence over your compliance and risk operations.

By connecting your existing ecosystem, it transforms your tools into a real‑time trust network, one where evidence is automatically gathered, controls are instantly validated, and audits become effortless.

Join the conversation

You might also be interested in

Duo

This document outlines the steps you can take to grant TrustCloud access to only...

Google Cloud Platform

This document outlines the steps you can take to grant TrustCloud access to only...

Bitbucket

Instructions to grant TrustCloud read-only access to your Bitbucket organization...

Okta

Set up Okta for automated tests with TrustCloud! This document outlines the steps you...

ServiceNow

Set up ServiceNow for Ticket as Evidence with TrustCloud! This document outlines the steps...

Tenable.io

This document outlines the steps you can take to grant TrustCloud access to only...

Jira Cloud

Set up Jira Cloud for Jira Ticket as Evidence with TrustCloud! This document outlines...

AWS

This document outlines the steps you can take to grant TrustCloud access to only...
OR

TrustCommunity

Instant support with our AI chatbot

Please login with your TrustCloud credentials to continue