Ocrolus Accelerates Customer Due Diligence and Reduces Operational Burden with Trust Center and AIQA

90%Accuracy rate maintained for AI responses, reducing manual review.
Multiple hours Saved per questionnaire, shortening security review timelines and accelerating deal cycles.

Challenge

  • Customer due diligence questionnaires and security reviews were handled through manual coordination, scattered documentation, and individual knowledge, slowing response times as volume and complexity increased.

  • Repeatedly answering similar questionnaires consumed significant time, making it hard to scale trust assurance work without adding headcount.

  • Security reviews became a bottleneck in the sales process, delaying deals when questionnaires and reviews took too long to complete.

Solution

  • Centralized customer trust content and compliance documentation in Drata Trust Center as the single source of truth for security information.

  • Implemented Drata AI Questionnaire Assistance (AIQA) to generate draft answers for customer due diligence and security questionnaires using approved content from Trust Center.

  • Shifted the team’s work from slow, manual response creation to reviewing, validating, and handling exceptions on automated, cross-functionally aligned content.

Results

  • Processing time with Drata AIQA is about 3 minutes per 100 questions, significantly reducing overall turnaround compared to days of manual effort. 

  • AI-generated responses consistently achieve above 90% accuracy after training on Ocrolus validated content, requiring only minimal review.

  • Hours saved per questionnaire enable the team to handle higher volumes of incoming requests while shortening security review timelines and accelerating deal cycles.

Background

Senthil Kumar “SKI” Iyyappan, CISO and Head of IT at Ocrolus, leads a team responsible for strategy, operations, people, and budget across disciplines. He focuses on building a mature information security program and controls that meet customer, regulatory, and industry security expectations while enabling the business to move quickly and confidently. 

Ocrolus works with highly sensitive data, making trust fundamental to every aspect of the business. Customers require confidence that their data is handled securely, responsibly, and in line with industry standards. 

As the company grew, the volume and complexity of security reviews and due diligence questionnaires steadily increased, straining a trust program that was effective but highly manual and reactive.

Trust is foundational to Ocrolus’ business, and by investing in trust through strong controls, transparency, and tools like Trust Center and AIQA, we not only reduce friction in the sales process but also reinforce long-term customer confidence and market credibility.

Senthil Kumar “SKI” IyyappanCISO & Head of IT, Ocrolus

Ocrolus implemented Drata’s Trust Center and AIQA solution as the bedrock of its trust assurance workflow to meet the team’s need for a unified platform capable of standardizing responses, reducing repetitive effort, and proactively sharing trust and compliance information with customers, all without sacrificing accuracy or control.

Centralizing Customer Trust Content in Trust Center

Before Drata, Ocrolus’ trust efforts relied on internal coordination, scattered documentation, and individual knowledge. That made it difficult to maintain consistency and respond quickly as expectations and request volumes climbed. SKI’s team needed a single source of truth for customer-facing security content that could keep stakeholders aligned and buyers informed without constant back-and-forth.

With Trust Center, Ocrolus centralized customer trust content, compliance information, and validated responses in one place. The team can easily upload, organize, and update security and compliance documentation, ensuring customers always have access to the most up-to- date answers.

Quick updates without heavy rework or cross-team coordination reduce version control headaches and minimize repetitive inbound questions, while enabling a more scalable, self-serve trust experience.

Publishing our Trust Center was a smooth and efficient process, and ongoing management has been equally straightforward, ensuring customers always have access to the most current information.

Balavikram SivasankaranGRC Lead, Ocrolus

The Trust Center now serves as the hub for Ocrolus’ trust posture, keeping Sales, Legal, Product, Engineering, and Security leadership aligned on approved, accurate responses and documentation.

Scaling Due Diligence Response with AIQA

Manual completion of customer due diligence questionnaires previously required days of effort per request and heavy reliance on subject matter experts. Repeatedly answering similar questions consumed significant time, and maintaining response consistency across customers was difficult.

With AIQA, Ocrolus shifted from manual drafting to AI-powered questionnaire automation. Validated responses and documentation in Trust Center feed AIQA, allowing the team to automatically answer repetitive questions using approved content while maintaining consistency and accuracy. Instead of starting from scratch for each questionnaire, the trust team now focuses on review, validation, and exception handling.

Completion of due diligence questionnaires is significantly faster and more consistent. Overall, the process has shifted from manual response creation to quick review and refinement.

KaushikSenior GRC Specialist, Ocrolus

Median processing time within AIQA is now 3 minutes for 100 questions, significantly reducing overall turnaround compared to days of manual effort when the team handled every response manually.

AI-generated responses now achieve consistently above 90 percent accuracy, after training on multiple questionnaires and validated content, requiring only minimal review before delivery.

Drata has eliminated a large portion of manual drafting time, saving hours per questionnaire and allowing the team to focus on higher-value work.

Turning Security Reviews into a Business Enabler

As customer due diligence and security reviews grew more complex, they risked delaying deals and creating friction with Sales and other stakeholders. By combining Trust Center with AIQA, Ocrolus not only accelerated reviews but also improved the buyer experience and internal collaboration.

Buyers now benefit from faster responses, consistent answers, and self-serve access to trust documentation, resulting in a smoother and more professional security review experience.

Internally, fewer ad-hoc requests and clearer ownership have improved collaboration with Sales, Legal, and Engineering, and stakeholders increasingly view the GRC and Trust team as strategic partners. Security and trust are now positioned as revenue drivers, not blockers.

Trust Center and AIQA have meaningfully reduced the operational burden of customer trust and assurance work and enable a more scalable, proactive trust model that supports both security and business growth.

Senthil Kumar “SKI” IyyappanCISO & Head of IT, Ocrolus

What Drata Unlocked for the Trust Team

With Drata Trust Center and AIQA, Ocrolus’ trust assurance workflow is now centralized and largely automated. 

  • Customer trust content, compliance documentation, and validated responses live in Trust Center as a single, always-current source of truth.

  • AIQA accelerates due diligence questionnaires with accurate, AI-powered responses based on approved content.

  • The team can respond to more questionnaires without increasing effort, with significantly faster turnaround times and reduced manual drafting.

  • Internal stakeholders and customers spend less time on back-and-forth, and more time focused on strategic work and decision-making.

Future Outlook

As Ocrolus continues to scale, SKI expects Trust Center and AIQA to play an even more central role in the company’s trust strategy—supporting higher questionnaire volumes, deeper integrations with internal systems, and more advanced AI-driven automation to maintain efficiency and consistency.

The team is particularly interested in continued innovation around AI accuracy, advanced analytics, and deeper workflow automation, including insights that help predict trust-related bottlenecks and further reduce manual review effort.

Drata has helped us move away from manual, reactive processes and into a more proactive, scalable trust model. With Trust Center and AIQA, we can keep stakeholders aligned, respond to customers faster, and support business growth without increasing operational burden.

Senthil Kumar “SKI” IyyappanCISO & Head of IT, Ocrolus

Latest Stories

Chart Your Course

Navigate to new worlds of trust with Drata.

Get a Demo

Chart Your Course

Navigate to new worlds of trust with Drata.