About this document
This document provides step-by-step instructions for configuring the OneTrust TPRM integration in SAFE One.
Introduction
The OneTrust TPRM integration allows you to pull third-party vendor information from OneTrust into SAFE One, enabling easy onboarding and streamlined vendor risk management. SAFE Admins can configure this integration via the "OneTrust TPRM" card on the Integrations page.
Prerequisites
Base URL (OneTrust URL)
Client ID and Client Secret
Permission: VRM_READ
Generate Connection Details
Log in to your OneTrust Portal.
Click the Settings icon.
In the Settings menu, navigate to the Client Credentials tab on the left.
Click Add to create new credentials.
Fill in the required details and set the Access Token Lifetime.
SAFE recommends setting the token lifetime to the maximum allowed value.
Click Next to proceed.
In the Scope section, scroll to Third Party Risk Management and select the VRM_READ permission.
Click Next. The system displays the Client ID and Client Secret.
Copy and save the Client ID and Client Secret securely.
Configure OneTrust TPRM in SAFE
Follow the steps below to configure OneTrust TPRM in SAFE:
Go to the Integrations page and click the "OneTrust TPRM" card.
Enter the Base URL of your OneTrust app, Client ID, and Client secret generated above.
[Optional] Enter the Organization Filter. Enter a comma-separated list of organizations (business units). The SAFE pulls the vendor list for the entered organizations only. If left blank, the vendor list of all the organizations will be pulled in.
Click the Test Connection button.
Once the connection is verified, click the Save button.
Using the OneTrust TPRM Integration and Viewing Results
Syncing Vendors
Navigate to the OneTrust TPRM integration card on the Integrations page in SAFE.
Click the Sync Now button to initiate a sync with OneTrust.
Onboarding Vendors
Users can review the organizations listed in the Newly Discovered section.
From there, users can select and onboard any organization as a third-party entity into SAFE.