This profile has been claimed and optimized by Drata. Optimized profiles are more likely to have the most up-to-date content, fast response times, current pricing, and more.
Pricing information for Drata is supplied by the software provider or retrieved from publicly
accessible pricing materials. Final cost negotiations to purchase Drata must be conducted with the
seller.
Pricing information was last updated on October 09, 2024
Drata completely transformed the way we manage our compliance activities, especially in terms of keeping track of the controls and the related evidences. Prior to using Drata, our compliance activities such as policy management, risk assessments and evidence collection were all managed via Google Drive, mainly on spreadsheets which made everything quite manual and scattered around. Now we have everything in one place and in great detail. All our evidences are documented within the platform and it is a huge plus that we have the Audit Hub so there is no need for us or the auditor to waste time anywhere else trying to reach these documents. We manage all employee tasks from Drata and centralize the security training, too. Setting up the integrations is fast and easy, and the related monitors give us additional insight on our tech stack. Our periodic Risk Assessments are now easier because we have one platform to track treatment plans instead of spreadsheets. Vendor compliance management and report review functionality is also really handy. The custom framework capability is really helpful for us to track country-specific frameworks. We made use of the custom framework feature very recently an it worked wonders for us.
Drata team is always very quick to help us assist with any problem or question we might have. Our customer success manager efficiently keeps track of any open items and supports us in the process until they are solved. He also introduces us to new features often. The team behind the live chat, both for platform-specific questions and compliance questions, also approach the issues with the utmost care. We had a change of CSM's a few times, and each time we were accompanied with great attention and care.
We use Drata every day and it definitely helps us automate almost everything compliance related. It is a great tool to track SOC2, ISO controls. It has been over a year of using Drata, and we have not had any doubts since then Review collected by and hosted on G2.com.
What do you dislike about Drata?
There isn't anything that I particularly dislike about Drata. Even when there are issues with the platform (and there was nothing major so far at all, just a few issues that you would expect from any such platform of this size), our CSM and the rest of the team are really quick and helpful with their support.
The only con of the platform for us would be the lack of integration with GCPW, and how we cannot connect two IdPs at the same time. However the team is aware of this need of ours and from past experience we are aware of how important it is for them to take client needs and requests into account. Review collected by and hosted on G2.com.
What problems is Drata solving and how is that benefiting you?
Ensuring compliance and maintaining it is highly important to us, both to ensure that our security posture is as strongest as possible and of course also to showcase it to our clients. As a SaaS with clients all over the world expecting continuous ISO27001 and SOC2 compliance from us, Drata simplified this process and made it efficient and helped us automate a lot. It helps us identify gaps and requirements clearly and quickly. We spend way less time preparing for the frameworks in scope and to maintain them. After starting to use Drata we got SOC2 Type II certified with ease, making extensive use of the control guidelines, document templates, and the overall automatizations that Drata offers. Review collected by and hosted on G2.com.
Gives us a process for getting ISO27001 that would have been difficult to follow otherwise. Review collected by and hosted on G2.com.
What do you dislike about Drata?
There's only really one thing, but it's important and incredibly painful. There's no ability to add your own users if they don't exist in your IDP. For example a contractor that doesn't have their email address on your domain - you cannot bring them into the system. This has wasted so much time as we need to find alternative systems for things that we're already paying for as part of Drata. Review collected by and hosted on G2.com.
What problems is Drata solving and how is that benefiting you?
ISO27001 is complicated and Drata at least makes the process easier to understand. There's a lot of value just in their documentation despite the platform being difficult to navigate. Review collected by and hosted on G2.com.
Thank you for taking the time to provide your feedback and for highlighting the aspects of Drata that you find valuable, particularly our assistance with the ISO 27001 process. While we are pleased to hear that our platform has helped make this complex standard more understandable and manageable for your organization, we are also genuinely sorry to hear about the difficulties you've encountered with adding users who are not in your IDP.
We understand how crucial it is to have a seamless and flexible user management system, especially when you’re trying to deal with multiple users. Your experience does not reflect the experience we strive to provide.
Please know that we take your feedback seriously. Our product team is already aware of the need for more flexible user management capabilities, and we are actively exploring solutions to address this issue. In the meantime, I would love to connect with you directly to discuss your specific use case and explore any potential interim solutions we might be able to offer.
We value your business and your feedback immensely, as it helps us improve and better serve our customers. If you’re open to it, please reach out to me at ashley@drata.com so we can arrange a call to further discuss your needs and how we can assist you.
Thanks again for your candid feedback and patience as we work to enhance our platform.
With over 2.5 million reviews, we can provide the specific details that help you make an informed software buying decision for your business. Finding the right product is important, let us help.
or continue with
LinkedIn
Google
Google (Business)
Gmail.com addresses not permitted. A business domain using Google is allowed.