Cential AI Hub

This integration is an offering provided through the Archer Exchange to enhance your existing Archer implementation. The Archer Exchange provides offerings to expand the use of Archer solutions into new business processes and address specific industry, geographic, regulatory, or technical requirements.

Cential AI does not provide the installation package on the Archer Exchange. Clients must contact Cential AI Support at support@cential.ai to obtain the installation package and complete the installation.

Release notes

Release Date

Archer Platform Release

Notes

August 2024

2024.06

Initial Release

About Cential AI Hub Integration

The Cential AI Hub is designed to address significant inefficiencies and challenges within the Governance, Risk, and Compliance (GRC) sector. Traditional GRC processes are often manual, time-consuming, and error-prone, requiring extensive human effort for tasks such as risk assessment, policy formulation, and third party profiling. This leads to increased costs, delays, and a higher likelihood of human error, which can impede an organization's ability to ensure compliance with regulatory requirements and manage risks effectively.

The purpose of the Cential AI Hub is to drive efficiency by integrating advanced Large Language Models (LLMs) like ChatGPT to Archer via the Cential AI Hub. The offering provides AI-driven automation to make GRC-related tasks more efficient, such as:

  • Risk Register Automation: Automatically generates detailed risk statements, baseline inherent likelihood, impacts with reasoning, and related laws and regulations.

  • Policy Generation: Automatically drafts policy standards, definitions, references, and control standards for related regulatory requirements.

  • Third-Party Profiles: Generates comprehensive vendor profiles, including industry data, competitors, and risk considerations.

  • Third-Party SOC 2 Report AI Review: Provide a SOC 2 report in PDF or Word format and the AI Hub will work with the AI LLM to automatically extract key details, such as the period of coverage, included trust services criteria, and the third-party attestation firm's opinion, and complete the necessary review fields in Archer.

By addressing these issues, the Cential AI Hub integration helps organizations streamline their GRC processes, reduce manual workload, and ensure compliance more effectively, ultimately leading to significant time and cost savings.

Key features and benefits

With the Cential AI Hub you will be able to:

  • Utilizes Large Language Models (LLMs) to process information and generate content for Third Party Profiles, Third Party SOC 2 reports, Policies, and Risks

  • Includes data filtering to ensure protection for sensitive data

Prerequisites

The following table lists the components and prerequisites for the Cential AI Hub Integration.

Components

Prerequisites

Archer Solution Area(s)

  • IT Security Risk Management

  • Operational Risk Management

  • Regulatory and Corporate Compliance

  • Third Party Management

Archer Use Case(s)

Depending on the offering usage, more than one of the following use cases may be required:

  • Policy Program Management (Policies application)

  • Third Party Catalog (Third Party Profile application)

  • Third Party Engagements (Engagements application)

  • Third Party Risk Management (Engagements application)

  • Enterprise Risk Management (Risks application)

  • IT Risk Management (Risks application)

  • Operational Scenario Analysis (Risks application)

Archer Applications

  • Engagements

  • Policies

  • Risk Register

  • Third Party Profile

Uses Custom Objects

No

Requires Archer On-Demand License

This offering does not require any ODAs.

Archer Platform Requirements

Archer Platform Release 2024.06 and later

Supported Archer Environments

  • On-Premises

  • SaaS

Note: Archer SaaS clients can leverage this offering but cannot install the offering in the Archer SaaS environment.  The offering must be installed on a client owned and managed server that can communicate with the Archer instance.

Partner/Vendor Requirements

Valid Cential AI Hub license is required. Additional fees may apply.

Compatible use cases and applications

The following table shows additional features that are available if you have the specified use cases licensed.

For information on these Archer use cases, see the Archer Solutions Help.

Related applications

The following table lists the related applications for Cential AI Hub Integration.

Application Use Case Primary Purposes of the Relationship

Risk Register

Top-Down Assessment, IT Risk Management, Information Security Management System

Automatically generate detailed risk statements and link related laws and regulations based on a brief risk description.

Policy

Policy Program Management, IT Policy Program Management

Automatically create policy standards, definitions, and control standards aligned with regulatory requirements, driving compliance and reducing manual effort.

Third Party Profile

Third Party Profile, Third Party Catalog, Third Party Risk Management, Third Party Engagement, Operational Scenario Analysis, Audit Engagements & Workpapers

Automatically gather and compile third-party data, including industry size, competitors, and risk considerations for business engagements.

Engagements

Engagements, Third Party Catalog, Third Party Risk Management, Third Party Engagement, Operational Scenario Analysis, Audit Engagements & Workpapers

Automatically review SOC 2 reports, extract critical details such as known qualifications, trust services criteria, and period of report.

Impacted use cases

The following table lists the impacted use cases for Cential AI Hub Integration.

Archer Use Cases

Top-Down Risk Assessment

IT Risk Management

Information Security Management System (ISMS)

Policy Program Management

Third Party Catalog

Third Party Risk Management

Impacted fields (Integrations only)

Archer Application Archer Target Field (Partner/Vendor Name) Source Field

Third Party Profile

Suggested Industry

Suggested Industry

Third Party Profile

Suggested Number of Employees

Suggested Number of Employees

Third Party Profile

NAICS Code

NAICS Code

Third Party Profile

SIC Code

SIC Code

Third Party Profile

DUNS Number

DUNS Number

Third Party Profile

Ticker Symbol

Ticker Symbol

Third Party Profile

Description

Description

Third Party Profile

Relationship Overview

Relationship Overview

Third Party Profile

General Risk Considerations

General Risk Considerations

Policies

Policy Scope

Policy Scope

Policies

Policy Purpose

Policy Purpose

Policies

Policy Statement

Policy Statement

Risk Register

Risk

Risk Statement

Risk Register

Inherent Likelihood Justification

Likelihood

Risk Register

Inherent Impact Justification

Impact

Engagements

Report Period Start Date

Suggested Report Period Start Date

Engagements

Report Period End Date

Suggested Report Period End Date

Engagements

SOC 2 Report Type

SOC 2 Report Type

Engagements

Trust Services Criteria Included

Trust Services Criteria Included

Engagements

Auditor’s Name

Auditor’s Name

Engagements

Auditor’s Opinion

Auditor’s Opinion

Engagements

Opinion Notes

Opinion Notes

Engagements

Services Covered

Services Covered

Engagements

Included Systems

Included Systems

Additional Resources

The following additional resources are available for this offering:

Cential AI Hub Integration components

Architecture diagram

The following diagram shows the relationships between the applications that make up the Cential AI Hub Integration.

Process diagram

The AI Hub process begins when a user creates and saves a record with the “Queue from AI Hub” checkbox field checked in one of the applications listed in the following section. The AI Hub API call is then triggered, and the following workflow occurs:

Personas and access roles

The following table describes the functions that make up the application’s organization roles. Depending on the organization of your company, these functions and responsibilities may vary.
Persona Description

Cential AI Hub Integration

Group and Role that provides content record create, read, and update to the included applications as listed above for the AI Hub Integration user.

Installing Cential AI Hub Integration

Security Considerations

The information in this publication is provided "as is". Archer makes no representations or warranties of any kind with respect to the information in this publication, and specifically disclaims implied warranties of merchantability or fitness for a particular purpose. Client is solely responsible for ensuring that the installation of the application is performed in a secure manner. Archer recommends clients perform a full security evaluation prior to implementation.

Clients are responsible for deploying all components of the package within their environment and assume all risks associated with the installation. Additional support can be reached at support@cential.ai.

Installation Overview

Complete the following tasks to install the Cential AI Hub Integration.

Step 2: Install the package

Installing a package requires that you import the package file, map the objects in the package to objects in the target instance, and then install the package.

Step 3: Test the installation

Test the application according to your company standards and procedures, to ensure that the use case works with your existing processes.

Configuring Cential AI Hub Integration

Cential AI does not provide the installation package on the Archer Exchange. Clients must contact Cential AI Support at support@cential.ai to obtain the installation package and complete the installation. Clients are responsible for deploying all components of the package within their environment and assume all risks associated with the installation. Additional support can be reached at support@cential.ai.

Using Cential AI Hub Integration

Risk Register

Certification environment

Date Tested: August 2024

Product Name

Release Information

Operating System

Archer

2024.06

Virtual Appliance

Cential AI Hub

-

Virtual Appliance