Instant Insights is a feature for the Continuous Monitoring applications that uses generative AI to extract a SOC2 Type II report’s contents, analyzes them, and then summarizes the contents into deep and actionable insights.
Before You Start, please note:
- Currently, only SOC 2 reports are supported for analysis. These reports are processed but not persisted in the CM app.
- The functionality is limited to summarization.
- Uploaded documents are not retained by the platform.
- Generated insights are lost once the user navigates away from the summarization page. We recommend that users re-run the analysis and export or print the summary to PDF if they wish to retain a record
About the Data
The AI analyzes and extracts key information, such as:
- Type of report
- Nature of services provided
- Report period
- Locations where data is stored or processed
- Auditor’s name
- Auditor’s opinion (qualified/unqualified)
- Any flagged exceptions or risks
Each control includes references to the pages in the document where the information was sourced. You can also preview the document to confirm the accuracy of the AI responses.
AI Technologies Used in Bitsight
Instant Insights is powered by the Google Gemini model, integrated through Vertex AI. Leveraging the Gemini model's advanced capabilities, the analysis results provides:
- Deep insights: Extract valuable information and uncover hidden patterns within documents.
- Enhanced comprehension: Understand complex language and context within documents, leading to more precise analysis.
- Industry-leading security: Data is processed with the highest security standards, ensuring confidentiality and integrity.
Data Security and Privacy
We developed Instant Insights with security at the forefront to make sure document data is secure:
- Documents are securely handled and protected by Bitsight. Your sensitive information is kept confidential and secure throughout the analysis process.
- Data is not shared across vendors. Documents are analyzed independently; Data from one document or vendor is never used to influence the analysis of another. This ensures information from different vendors or reports remains isolated and are never intermingled.
- Third-party providers (such as Google) are strictly prohibited from using Bitsight customer information for training, fine-tuning, or improving any third-party AI models or services.
- January 9, 2026: Added clarifying language to inform users of current limitations and reccomended steps with using Instant Insights in CM.
- December 16, 2025: Published.
Feedback
0 comments
Please sign in to leave a comment.