TrustCloud launches Application Assurance: AI-native continuous control monitoring for enterprises. Read more →

Hybrid Data Fabric

Estimated reading: 5 minutes 3113 views

Imagine having a live map of your organization’s digital footprint, with every system, user, device, and data store represented clearly and precisely. That’s what hybrid data fabric in TrustOps brings to life. Rather than chasing fragmented spreadsheets or outdated lists, hybrid data fabric gives you a single, unified view of everything that matters to compliance and security.
With hybrid data fabric, your team can:

  1. See all assets, systems, and processes subject to compliance in one place
  2. Track changes, spot gaps, and assess risk proactively
  3. Turn real data into evidence for audits and control testing
  4. Link systems and evidence automatically, reducing manual work

Hybrid Data Fabric transforms raw technical details into actionable compliance intelligence.

What is the Hybrid Data Fabric?

The hybrid data fabric contains a list of multiple data feeds that are collected from on-prem sources, cloud sources, or custom sources. It represents all the data TrustCloud is ingesting for use across control testing, assurance, automated evidence collection, and key risk indicator automation.

Purpose of a data feed

Maintaining accurate and up-to-date data helps organizations:

  1. Identify vulnerabilities and areas of risk.
  2. Ensure compliance efforts are well-targeted and effective.
  3. Prioritize resources to address areas requiring immediate attention.
  4. Reduce the likelihood of compliance breaches.

Data Feeds in TrustOps

In TrustOps, a data feed is used to assess compliance by being reviewed through automated tests or manual evaluations. This process determines whether controls are met and helps analyze compliance results.

Examples of data feeds

Common types of data feeds include

  1. Users
  2. Systems
  3. Security incidents
  4. Devices
  5. Servers
  6. Databases
  7. Logs

TrustOps provides tools to manage and maintain data feeds efficiently, ensuring that compliance activities remain accurate and effective.

Hybrid Data Fabric in TrustOps

The Hybrid Data Fabric page in TrustOps provides a centralized view of all data feeds tracked across integrated systems. By configuring data feeds, you can gain real-time insights into critical assets and use this data as evidence to meet control requirements.

Data Feed structure in TrustOps

  1. System-Based Data Model: Data feeds are categorized by system, allowing for easy navigation and management.
  2. Detailed Data Feed View: Clicking on a data feed  provides detailed information about resources within that system.
  3. Data Feed as Evidence: When adding a data feed as evidence, TrustOps directs you to the relevant data feed linked to the test.

Data Feeds

The TrustOps Hybrid Data Fabric page includes a list of data feeds, allowing organizations to connect and manage their compliance-related data efficiently. Below is a sample list of available data feeds and instructions on how to connect them in TrustOps.

  1. Alerts: List of alerts for log monitoring tools
    Available feeds:

    1. CloudWatch Logs
    2. Datadog
    3. Sumo Logic
  2. Assets: A list of all of your organization’s assets from your asset monitoring tools
    Available feeds:

    1. Jamf
    2. Jumpcloud
    3. Kolide
    4. Duo
  3. Access: A list of all users with access roles
    Available feeds:

    1. Buildkite
  4. Background Checks: A list of all background checks performed
    Available feeds:

    1. Checkr
  5. CI/CD Projects: A list of all CI/CD pipelines from your CI/CD tools
    Available feeds:

    1. Buildkite
    2. Circle CI
    3. Travis CI
  6. Data Stores: A list of database stores from your DBMS systems
    Available feeds:

    1. RDS
  7. Employees: A list of employees from your HR systems
    Available feeds:

    1. BambooHR
    2. Freshteam
    3. TriNet
  8. Job Listings: A list of all job postings
    Available feeds:

    1. Greenhouse
  9. Logs: Audit logs from your enterprise monitoring tool.
    Available feeds:

    1. CloudWatch Logs
    2. Sumo Logic
  10. Monitoring: List of all monitoring metrics for log monitoring tools
    Available feeds:

    1. Datadog
  11. Phishing Attempts: A list of all of your Phishing Tests performed by your Security Training tool
    Available feeds:

    1. Knowbe4
  12. Repositories: A list of all your repositories from your VCS
    Available feeds:

    1. Bitbucket
  13. Security Training Campaigns: A list of all security training campaigns from your Security Training Tool
    Available feeds:

    1. Knowbe4
  14. Security Training Subscriptions: A list of account subscriptions for your Security Training Tool
    Available feeds:

    1. Knowbe4
  15. Users: A list of all of your users from your identity providers
    Available feeds:

    1. Google Auth
    2. Azure AD
    3. Okta AD
  16. Vulnerability Scans: List of reports from vulnerability scanning tools
    Available feeds:

    1. Snyk

To view a data feed,

  1. Go to the “Hybrid Data Fabric” page in your TrustOps program.
    The following screenshot shows the “Hybrid Data Fabric” page in TrustOps.
    Hybrid data fabric

To add a new data feed,

  1. Go to the “Hybrid Data Fabric” page in your TrustOps program.
  2. Click on the “Data Feed” button.
    TO Add Custom Data Feed
  3. Enter the required information, like data feed name, source and description, and click on “Send Request” button.

Providing data feeds as evidence

Once you have set up data feeds in TrustOps, you can use these feeds to automate control verification. This saves your team time when collecting evidence for controls and ensures you are presenting live and accurate data to your auditor. You can select evidence from the TrustOps feeds. You can select records from connected systems to use as evidence. TrustOps will automatically generate a report from your selection.

A step-by-step guide to providing data feeds as evidence

  1. Go to the “Controls” page of your TrustOps program.
  2. Click on the control.
  3. Go to the “Tests” tab and then click on the “Self-Attestation” section
  4. Click on the three-dot menu, and select “Add Evidence.”
    TO Add Evidence
  5. Select “Data Feed Records.”
  6. Select data feed as the source and click on “Select Records” button.
    TO Add Evidence Data Feed
  7. Select records and click on the “Proceed” button.
    TO Add Evidence Data Feed Add Records
  8. You can review the record and click on the “Add Evidence” button.TO Data Feed Add Records
  9. These records will be automatically added to the evidence list of the control, and it will give you a message about the evidence status.

The following video will give you an overview of data feeds and guide you through adding feeds as evidence.

Join the conversation

You might also be interested in

Groups in Controls

TrustCloud provides you with a comprehensive set of controls to get certified against several...

Mapping a Control

TrustCloud’s common controls framework maps a comprehensive set of certified standards controls and your...

Sharing Controls with customers

The TrustShare application in TrustCloud makes it easy for startups, SMBs, and enterprises to...

Excluding a control, test or attestation

The exclusion allows you to remove certain resources, controls or tests from your program...

Control Attributes

Every control has many attributes that help us understand it better for mapping and...

Editing Controls

Control customization is a pillar of TrustCloud’s platform, effortless crafting of custom controls. With...

Adding Controls

TrustOps gives you the ability to add a custom control to your program, add...

Policies

A policy is a document that describes the intention, expectations, and overall approach that...
OR

TrustCommunity

Instant support with our AI chatbot

Please login with your TrustCloud credentials to continue