SoftwareSAI360

SAI360

Integrated GRC platform (GRC Elevate 6.0 with embedded AI); compliance risk assessments; ethics and compliance bundles; learning; enterprise risk management.

Checked 27 August 2026

Pricing

On enquiry

Capability coverage

1/35

verified. 32 not established.

Delivery

saas

Where it is weaker

Recorded with the same care as the capabilities, and not softened.

  • Exact pricing figures not captured.
  • Legal entity and ABN not verified against ABN Lookup.
  • Australian entity is SAI360 CORE Pty Ltd, a NSW-registered supplier; global HQ is Chicago.

Capabilities

All tracked fields for Privacy, Cybersecurity & GRC, shown whether or not we could establish them.

Privacy

  • Australian Privacy Principles (APP) managementPartial

    Compliance risk assessment modules cover obligations; APP-specific scope not confirmed.

  • Privacy registerNot established
  • Data inventoryNot established
  • Data mappingNot established
  • Privacy Impact Assessment (PIA / DPIA)Not established
  • Consent managementNot established
  • Retention managementNot established
  • Data breach workflowNot established
  • Notifiable Data Breaches (NDB) workflowNot established
  • Data subject / privacy requestsNot established

Cyber Frameworks

  • ACSC Essential Eight maturityNot established
  • ISO/IEC 27001 information security managementNot established
  • Information Security Manual (ISM) complianceNot established
  • NIST Cybersecurity Framework (CSF)Not established
  • SOC 2 readinessNot established

Risk

  • Cyber risk registerVerified
  • Asset registerNot established
  • Control libraryNot established
  • Control testingNot established
  • Third-party risk managementNot established
  • Vendor assessmentNot established

Evidence

  • Audit evidenceNot established
  • Policy managementPartial

    Policy management appears in plan bundles; scope not fully detailed in captured pages.

  • AttestationsNot established
  • Evidence collectionNot established
  • Compliance reportsNot established

Security Operations

  • Vulnerability managementNot established
  • Incident responseNot established
  • Security assessmentNot established

Technical

  • Single sign-on (SSO)Not established
  • IntegrationsNot established
  • API accessNot established
  • Australian data residencyNot established
  • EncryptionNot established
  • Audit logNot established

Integrations

None named on the provider's own site. If integrations matter to you, confirm directly before buying.

Evidence & sources

Comparison-critical facts carry evidence: where they came from, when they were checked, and how they were verified.

Australian Privacy Principles (APP) management

Cyber risk register

Policy management

Request a quote or demo

Send your requirements to SAI360's provider. Your details are shared only with them.

Privacy, cybersecurity and GRC software and services support compliance with privacy law and security frameworks. Nothing on this page is legal advice, and no provider is certified, accredited or approved by the OAIC, ACSC or any regulator unless independently evidenced.