Listing Thumbnail

    Drata Security & Compliance Automation Platform

     Info
    Sold by: Drata 
    Deployed on AWS
    An AWS Security Competency Partner, Drata is a GRC solution that enables companies to continuously monitor security and compliance controls, automatically collect evidence needed for an audit, and manage and remediate risk. Drata also allows you to share your real-time compliance posture with prospects and customers to build trust and accelerate growth.

    Overview

    Play video

    Drata's compliance automation platform integrates with hundreds of applications and systems to continuously monitor security controls and streamline over 20 compliance frameworks, standards, and regulations, such as SOC 2, ISO 27001, HIPAA, PCI DSS, GDPR, and more. Drata integrates with 45+ AWS services and is a proud AWS Security Competency partner with an AI engine built on AWS Bedrock.

    Whether you're looking to get compliant quickly for the first time or want to streamline your complex GRC program, Drata scales with you. Get and stay compliant efficiently, build risk management into your GRC practice, and share your real-time compliance posture with prospects and customers to build trust and sell into new markets.

    Continuous automated monitoring alerts Drata customers when security controls aren't operating effectively to remediate, stay secure, and keep from falling out of compliance. Plus, automatic evidence collection makes the audit process as seamless as possible.

    For custom pricing, EULA, or a private contract, please contact AWS-Marketplace@drata.com , for a private offer.

    Highlights

    • Drata for Startups: Drata helps startups create a scalable foundation and systematic approach to compliance to unlock market opportunities and scale safely. Startups can speed up audit prep time with Drata's best-in-class automation and support from our compliance experts to achieve SOC 2 and ISO 27001 compliance quickly.
    • Drata for Commercial and Mid Market: Drata helps companies with audit experience establish a scalable GRC program and structured process for risk management. Streamline compliance tasks and substantially reduce manual workloads while leveraging compliance to increase revenue and build trust.
    • Drata for Enterprise: Customers can optimize and customize their mature GRC programs and depend on reliable compliance outcomes. Organizations can manage and remediate risk and leverage Drata workspaces and workflows to keep pace with the complexity of advanced compliance programs.

    Details

    Sold by

    Delivery method

    Deployed on AWS

    Unlock automation with AI agent solutions

    Fast-track AI initiatives with agents, tools, and solutions from AWS Partners.
    AI Agents

    Features and programs

    Trust Center

    Trust Center
    Access real-time vendor security and compliance information through their Trust Center powered by Drata. Review certifications and security standards before purchase.

    Buyer guide

    Gain valuable insights from real users who purchased this product, powered by PeerSpot.
    Buyer guide

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Drata Security & Compliance Automation Platform

     Info
    Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    12-month contract (1)

     Info
    Dimension
    Description
    Cost/12 months
    Foundation Package for 1-50 FTE Companies
    List price for 1-50 FTE Company
    $15,000.00

    Vendor refund policy

    All Orders are non-cancellable and all fees and other amounts you pay under this Agreement are non-refundable.

    Custom pricing options

    Request a private offer to receive a custom quote.

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Resources

    Vendor resources

    Support

    Vendor support

    Included in your contract, Drata provides onboarding, live chat (in product), and continuous enablement. Onboarding includes integration setup, assistance configuring compliance policy and controls in the platform, and guidance on utilizing our network of auditors and technology/service partners to serve you in your compliance journey. support@drata.com 

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    10
    In Centralized Risk Management, Compliance and Auditing, Security
    Top
    10
    In Centralized Risk Management, Compliance and Auditing, Security
    Top
    10
    In Legal & Compliance, Compliance and Auditing

    Customer reviews

     Info
    Sentiment is AI generated from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Compliance Framework Support
    Supports continuous monitoring and automation for over 20 compliance frameworks including SOC 2, ISO 27001, HIPAA, PCI DSS, and GDPR
    Cloud Service Integration
    Integrates with 45+ AWS services and leverages AWS Bedrock for AI-powered compliance monitoring
    Automated Security Control Monitoring
    Provides continuous automated monitoring with real-time alerts when security controls are not operating effectively
    Evidence Collection Mechanism
    Automatically collects compliance evidence to streamline audit processes and reduce manual documentation efforts
    Multi-System Application Connectivity
    Integrates with hundreds of applications and systems to enable comprehensive security and compliance tracking
    Compliance Automation
    Automates evidence collection across 35+ security and compliance frameworks including SOC 2, ISO 27001, HIPAA, PCI DSS, and GDPR
    Cloud Service Integration
    Deep integrations with 40+ AWS services providing comprehensive cloud security and compliance visibility
    AI-Powered Security Management
    AI Agent provides intelligent task management, smart recommendations, and real-time audit documentation generation
    Custom Test Support
    Supports custom automated tests built directly in-platform or via API for self-hosted and custom-built systems
    Multi-Product Security Platform
    Offers comprehensive trust management solutions including compliance automation, third-party risk management, and trust center capabilities
    Compliance Framework Support
    Supports multiple compliance frameworks including SOC 2, ISO 27001, ISO 42001, HIPAA, GDPR, PCI DSS, and POPIA
    Automated Evidence Collection
    Enables automated evidence collection and continuous control monitoring across security workflows
    Cloud Integration Capabilities
    Seamless integration with 30+ AWS services and over 100 cloud platform integrations
    Continuous Monitoring
    Provides 24/7 continuous monitoring with capability to reduce time to compliance by up to 90%
    Security Control Management
    Offers automated user access reviews, vendor risk management, and centralized security and compliance workflow management

    Security credentials

     Info
    Validated by AWS Marketplace
    FedRAMP
    GDPR
    HIPAA
    ISO/IEC 27001
    PCI DSS
    SOC 2 Type 2
    No security profile
    -
    -
    -
    -
    -
    -
    -
    -
    -

    Contract

     Info
    Standard contract
    No
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    3.4
    4 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    0%
    75%
    0%
    0%
    25%
    4 AWS reviews
    |
    1092 external reviews
    Star ratings include only reviews from verified AWS customers. External reviews can also include a star rating, but star ratings from external reviews are not averaged in with the AWS customer star ratings.
    Aengus O.

    Beginning your Compliance journey

    Reviewed on Oct 06, 2025
    Review provided by G2
    What do you like best about the product?
    Drata gives you a great way to begin a Compliance journey if you don't have people to guide you.
    What do you dislike about the product?
    Not much, would be nice to see a Wizer integration.
    What problems is the product solving and how is that benefiting you?
    It pulls data from all sorts of sources and gives you a central view/alerting structure.
    Sheldon W.

    Drata and SOC2

    Reviewed on Oct 02, 2025
    Review provided by G2
    What do you like best about the product?
    I found the platform straightforward to use, with a high level of integration that made my experience smooth. The support teams were outstanding, always ready to help. Additionally, the AI provided valuable assistance with policy matters.
    What do you dislike about the product?
    A few of the policy templates lacked clarity regarding versioning, and the process of importing policies felt awkward and cumbersome.
    What problems is the product solving and how is that benefiting you?
    We first engaged a consultant to determine the cost of having an external firm provide us with SOC2 compliance. However, the proposals we received were too expensive for our company. Fortunately, we found that working with Drata allowed us to achieve our goals at a much lower cost.
    Hospital & Health Care

    Drata makes SOC2 easy

    Reviewed on Sep 29, 2025
    Review provided by G2
    What do you like best about the product?
    Our auditor is able to collect evidence directly from Drata and can also create new evidence requests within the platform. This workflow is a significant improvement over my previous experiences, where auditors and I had to use a shared ticketing system and all evidence had to be uploaded manually.
    What do you dislike about the product?
    The configuration options for monitors could be more detailed. For instance, I would like the ability to include or exclude specific resources from my AWS scans using regex, but currently, there is no way to achieve this.
    What problems is the product solving and how is that benefiting you?
    Streamlining our audit process
    Keith B.

    A seamless and reliable compliance automation platform, supported with an incredible CSM.

    Reviewed on Sep 25, 2025
    Review provided by G2
    What do you like best about the product?
    As a relatively small organisation, Drata has truly been a game-changer for us. Without a large compliance team, we have still been able to make steady progress toward our compliance goals, thanks to the platform. Working alongside a responsive auditing partner, we found the initial implementation straightforward and easy to get started with. The automation features for evidence collection and continuous monitoring have saved us countless hours of manual effort. We rely on Drata daily to ensure that any issues are promptly reported to the appropriate team and resolved quickly. We also value how smoothly it integrates with our core tools, such as AWS, Microsoft 365, and Intune, and how it offers clear dashboards and guided workflows that make preparing for audits much less stressful.
    What do you dislike about the product?
    The only real negative we’ve experienced is that support can sometimes be slower than we would like to respond. However, this has been more than mitigated by our highly responsive Customer Success Manager, who has consistently gone above and beyond to keep us moving forward. Overall, this balance has meant issues never become blockers. I wouldn't hesitate to recommend Drata to any organization.
    What problems is the product solving and how is that benefiting you?
    Drata is helping us overcome the challenges of managing compliance as a relatively small organisation without a large dedicated compliance team. It automates evidence collection, tracks controls continuously, and integrates directly with our core systems, which removes the need for endless spreadsheets and manual checklists. This saves us significant time, reduces human error, and gives us real-time visibility into our compliance posture. The biggest benefit is confidence—we can focus on growing the business while knowing we’re always audit-ready and aligned with frameworks like SOC 2 and ISO 27001.
    Legal Services

    Great

    Reviewed on Sep 25, 2025
    Review provided by G2
    What do you like best about the product?
    Rachel responded quickly to my ticket and helped me resolve my login issue.
    What do you dislike about the product?
    Everything is great. I have no issues with Drata.
    What problems is the product solving and how is that benefiting you?
    Login issue with my account.
    View all reviews