Reviews from AWS Marketplace
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
External reviews are not included in the AWS star rating for the product.
Great tool for SOC2 compliance
What do you like best about the product?
The simplicity of using the tool, terrific support from knowledgeable and professional staff, connections to automate compliance checking and evidence, continuous improvement to provide additional features and benefits, very open to suggestions for improvement and genuinely engaging in accommodating needs.
What do you dislike about the product?
Their tool is designed to collect information and evidence via their proprietary agent installed on endpoints to assess local controls and obtain end user interaction. The agent is probably quite appreciated by small companies with limited IT resources, but we have IT administrators that utilize endpoint management tools and do not want to burden end users with needing to provide acknowledgments or acceptance using the Drata agent. Since we elected not to use the agent, we must manually update controls regarding endpoints and personnel. However, Drata is helping us overcome this burden by providing a custom mass load function as a temporary measure until they develop an interface connector for our endpoint management solution. Drata is committed to eliminating the single dislike I have!
What problems is the product solving and how is that benefiting you?
Our customer success manager meets with us bi-weekly to discuss process, procedures, provide tips, and offer solutions to help us in our journey to SOC2 compliance. She brings in subject matter experts when needed. Drata is more than a vendor - they are truly a business partner, helping us to achieve our goal of obtaining a SOC2 attestation.
- Leave a Comment |
- Mark review as helpful
Excellent Continuous Compliance Solution
What do you like best about the product?
Drata is an excellent product to help achieve, maintain, and monitor compliance. The product itself is great and does what it's advertised to do, but the customer experience team that worked with us was exceptional. Specifically, our Customer Success Manager, Gabe Bidot, was with us every step of the way helping with the software and preparing us for audit.
What do you dislike about the product?
There are a few minor features that are not yet implemented, but the team seems to be listening to their customers and diligently releasing new functionality all the time.
What problems is the product solving and how is that benefiting you?
Managing our SOC 2 certification and automating the monitoring of the applicable controls all in one place.
Great software and even better people
What do you like best about the product?
With its intuitive and well-laid-out interface, Drata makes it a pleasure to track compliance controls and policies. It has certainly saved countless hours. Our customer success manager, Gabe, is very knowledgeable and quickly gets us answers to any of our compliance questions. When compared to other similar products, or even tracking compliance manually, Drata is a no-brainer.
What do you dislike about the product?
Drata is missing some features, such as an API, but new features and integrations are being added all the time and now the API is in beta (as of this writing 12-2022).
What problems is the product solving and how is that benefiting you?
Tracking compliance controls and policies, as well as providing proof of compliance to customers.
Drata makes completing compliance objectives much easier!
What do you like best about the product?
We reviewed five or so compliance platforms before ultimately settling on Drata. The user experience is superb. The integrations and automation tools are a real timesaver. The support is always responsive, and it really helps that there is an experienced team behind Drata. Questions that come up about meeting controls in the spirit of the framework often seem like answers could waver one way or the other, and they've been able to help us out. Gabe is one of the best customer success managers I've ever worked with. He's highly positive and knowledgeable. He does an excellent job keeping us on track to meet our compliance objectives. I often feel like our feedback is heard as we get updates on the development roadmap.
What do you dislike about the product?
The Drata Agent doesn't pick up our Windows BitLocker encryption, so we have to manually upload evidence to support that. Drata is aware of this limitation and is working on ways to improve it. We keep a lot of evidence in an external documentation system since most of it already exists there. Sometimes adding this evidence gets repetitive, but Drata is aware of the feedback (internal evidence or policies don't have this issue). The big takeaway here is that there's not much to dislike, and even if we find something, I have no problem mentioning it because I feel like we have a real chance of that feedback becoming an improvement later.
What problems is the product solving and how is that benefiting you?
Drata is helping keep our compliance efforts across multiple subsidiaries and security frameworks all in one spot. We can use automation and integrations to monitor evidence in ways we wouldn't have been able to with a spreadsheet or ticket system. It's a force multiplier for our small team.
I think for our team, the big win is the level of experience the support team has and that this support is available with the cost of the platform. We had so many questions answered that brought things to light for us. The other platforms we evaluated did not offer this.
I think for our team, the big win is the level of experience the support team has and that this support is available with the cost of the platform. We had so many questions answered that brought things to light for us. The other platforms we evaluated did not offer this.
Organized and automated compliance and security platform
What do you like best about the product?
Customer Support is great, integrations are easy to use. Security monitoring across our systems gives peace of mind. Having all of our policies in one location with yearly reminders to keep updated is so incredibly helpful.
Drata empowers small companies to take on the compliance process which is normally reserved for big companies with large IT teams.
Drata empowers small companies to take on the compliance process which is normally reserved for big companies with large IT teams.
What do you dislike about the product?
It is fairly expensive to use their platform and the platform cost does not include security testing or auditing. Luckily, Drata has a small company / startup discount.
The process of getting SOC-2 or other types of compliance is long and complicated. Drata makes it easier and way more organized, but it is still a large commitment for any company.
The process of getting SOC-2 or other types of compliance is long and complicated. Drata makes it easier and way more organized, but it is still a large commitment for any company.
What problems is the product solving and how is that benefiting you?
Compliance and security monitoring.
Best service to automate SOC2 compliance process
What do you like best about the product?
- Drata supports integration with major cloud services to collect evidence for SOC2
- Policy templates save us ton of time
- Customer support team is already there to help us
- Policy templates save us ton of time
- Customer support team is already there to help us
What do you dislike about the product?
- Nothing major but UX could be improved a little bit. For example, providing "sync" button for each connection to sync data again from cloud service and improve experience of mapping Github accounts with Google Workspace employee
What problems is the product solving and how is that benefiting you?
It is helping us achieve SOC 2 certification which of course improves our application security and process but also helps us to get more B2B customers by providing the trust to customers
Excellent experience and support for our SOC2 and ISO certification
What do you like best about the product?
Quite comprehensive solution, well-organized frameworks, and allowed us to automate many functions in compliance. Company provided very good support.
What do you dislike about the product?
Since Drata is checking so many portions of our infrastructure, it generates many notifications. These are all valid, however the burden is on us to resolve them or override them. This is more of a challenge on our side than on Drata's, but the resulting checks and balances can easily become time that we must manage carefully.
What problems is the product solving and how is that benefiting you?
Drata manages all of the content which is used in our audit. Drata provides good tools for the auditor to access that content. Drata lets us upload any report or content for the audit process. It forms a really useful 'system of record' for compliance information. It organizes controls by framework in a useful way.
Drata is easy to use & saves me a ton of time in my day-to-day work related to compliance!
What do you like best about the product?
I love the ease of use in Drata-setting up all of our data integration connections was super easy, and the intuitive design/navigation of the tool is something I enjoy using. Most of all, I love the customer support. Having former auditors on hand to answer framework-related questions and support for the tool itself has been a big time saver and offered peace of mind as we branch into other frameworks.
What do you dislike about the product?
I look forward to future changes around more management of custom policies and procedures in their GUI editor, as well as the addition of scheduling other compliance-related tasks and internal auditing features. Since they are young, I look forward to more updates to the community help articles and seeing what they continue to add to future roadmaps for the product. They seem willing to take feedback on current functionality and are open to suggestions.
What problems is the product solving and how is that benefiting you?
Drata saves me time in automated monitoring of ongoing compliance needs since it integrates with so much of our current technology stack. I had a wish list in my shopping for new compliance tooling and Drata met most of my needs at a competitive price point. The top items for me were things like keeping track of employee training and signoff on policies/procedures, controls related to device management, cloud security, etc. as well as the customer assurance portal. My team used to spend a lot of time manually collecting evidence from various systems, and now we can easily monitor in Drata through the click of a button/report. Also at the top of my list was in-app support from former auditors regarding questions related to controls or frameworks, and I have not been disappointed; they really do offer stellar support! Finally, the ability to add additional frameworks is incredibly easy. In past systems we spent a lot of time and money for consultant advice when we wanted to add on other frameworks, manually comparing controls from various frameworks and trying to figure out what items we needed to add, and Drata does that for you. It helps quickly and easily identify areas where your organization might need improvements with regard to security/compliance and how to start tackling them.
Compliance Made Easy
What do you like best about the product?
The most helpful thing about Drata is the ease of use and the real-time visibility you gain of your security posture. There is very little upkeep once the integrations have been made, and once improvements have been identified, Drata makes it super easy to implement those improvements.
What do you dislike about the product?
The only thing that I think Drata could improve is more integrations/automation. Most of our environment has been connected to Drata, but there are still a couple of services we hope to integrate if made available in the future.
What problems is the product solving and how is that benefiting you?
Drata is helping us solve the problem of security posture visibility and the compliance posture of our security program across multiple different compliance frameworks.
Customer Support 10/10
What do you like best about the product?
The customer support from Drata was incredible, very timely and thoughtful responses. We worked with Mike Mechling specifcially and he always took the time to meet with us and made our feel like a priority.
What do you dislike about the product?
Not applicable. All of the experiences we had with the Drata team were positive. They took the time to listen to our requirements, and we never had to remind them about follow-ups; they were very focused and cared about their customers.
What problems is the product solving and how is that benefiting you?
Drata is helping our team become Soc-2 compliant, which will allow our company to work with larger organizations since this is a hard requirement. Their platform has also helped us remain more organized by providing a central location for all critical information.
showing 481 - 490