- DATE:
- AUTHOR:
- The Drata Team
Automated recurring vendor reviews with the TPRM Agent
The TPRM Agent can now automatically create and begin recurring security reviews on schedule, reducing the manual work required to keep vendor reviews moving.
What's New
The TPRM Agent can now automatically create and begin recurring security reviews on schedule, with no manual trigger required.
When a vendor’s review start date arrives, the agent kicks off the review, collects documents from the vendor’s SafeBase Trust Center, and runs the full assessment without waiting for human input.
If the agent cannot access a Trust Center, such as when a token has expired, it proactively notifies the assigned Security Owner about seven days before the review starts so access can be resolved in time.
Notes
To be eligible, a vendor must have the TPRM Agent enabled on the account, a SafeBase Trust Center URL on the vendor profile, a Security Owner assigned, and recurring reviews enabled.
This automation is account-level and is configured under Vendors → Settings.
When recurring review automation is enabled, it bypasses the Criteria preview before assessments setting for those recurring reviews.
Even when reviews run automatically, teams can still upload additional documents and review findings before finalizing the review.
Learn more in Automate Recurring Vendor Reviews with the TPRM Agent.