Connect your Policy Management
Dedicated policy tools hold the approval chain — drafts, reviews, signatures, versions. TruSecure's policy-management connector pulls version history and approval records, so governance evidence shows who accepted what, when.
What the connector pulls
| Source system | What TruSecure pulls | Feeds governance |
|---|---|---|
| Version history | Drafts, published versions, change summaries | Policy Assistant · versioned source |
| Approval records | Approvers, dates, signatures | Audit Trail · NIS2 Art. 20 governance evidence |
| Attestation state | Who acknowledged which version | Evidence Automation · acknowledgement controls |
| Policy mappings | Framework coverage per document | Control Library · gap detection |
Evidence produced from Policy Management data
One control test pulled from live Policy Management state — not a manual export, not a screenshot, but a verified query result with provenance:
- Control tested
- Policies approved by the management body before issue
- Policy source
- PolicyStat · 14 documents, 62 versions
- Test
- re-perform · approval records vs issue dates
- Sample
- 14 current versions · 14 pre-approved, 2 with delegated approval
- Result
- pass · delegation authority documented and within limits
- Evidence
- Policy API query · timestamped 2026-08-22T07:29:54Z
- Export
- sealed · sha256:5e7a...b1c8
Setup and scope model
- Read-only, scoped permission
Connector requires read-only access to versions, approvals, and attestation data. No write permissions, no ability to approve, publish, or retire policies.
- Data filtered by entity
Policy sets scoped to the entity context — each entity's attestation state is its own record.
- Continuous sync
Approvals and attestations refresh continuously; a policy republished without approval flags immediately.
Commercial packaging
Policy Management connectors are part of the paid TruSecure Fabric subscription. The connector itself, the continuous sync, the evidence provenance tracking, and the mapping to NIS2, DORA, ISO 27001, SOC 2 and other frameworks are all included — no per-connector fees, no usage tiers. Pricing is scoped in the conversation, not a price list.
How integration works
A demo with your actual Policy Management environment shown in preview mode — your data pulling into governance, feeding controls and evidence. Then a Resilience Sprint that configures the connector for production, scopes the entity context, and validates the first evidence pull. No self-serve checkout, no per-connector pricing.
TruSecure helps operationalize requirements and prepare evidence. Legal interpretation should be validated by qualified counsel.