Listing Thumbnail

    MetricStream ConnectedGRC - Now Integrated with AWS Audit Manager

     Info
    Deployed on AWS
    Vendor Insights
    MetricStream is the global market leader of Integrated Risk Management and GRC solutions that empower organizations to thrive on risk by accelerating growth via risk-aware decisions across the extended enterprise, enabling resilience and digital transformation.
    4

    Overview

    Play video

    MetricStream's industry-leading ConnectedGRC platform enables organizations to Thrive on Risk by providing visibility and control across your organization. Only MetricStream combines deep domain expertise across GRC focus areas, with our in-depth product lines and a flexible SaaS-based integrated risk platform that equips you to make quick, consistent decisions across business units. With product flexibility, scalability and diversity in risk management tools, MetricStream's product suite can be used for a particular use-case and scaled up as requirements increase, to meet all your risk management requirements. Pricing and configuration options range to support mid-sized organizations to global enterprises.

    ConnectedGRC Products:

    • BusinessGRC: Enterprise & Operational Risk, Business Continuity Management, Regulatory Compliance, Internal Audit, Third Party Risk, Risk Quantification. Empowers risk leaders across business units to automate processes associated with identifying, managing and converting risk to a strategic advantage.

    • CyberGRC - IT & Cyber Compliance, IT & Cyber Policy, IT & Cyber Risk, IT Vendor Risk, Cyber Risk Quantification. AI & Mobile. Manage IT & Cyber risks across the entire spectrum. Risk Assessments with pre-packaged risk scoring algorithms allow you quickly build Risk Heat Maps and obtain quantified risk ratings. An advanced GRC library allows you to quickly support IT Audits such as ISO 27001, NIST, SOC2 and many more. Integrations with AWS Audit Manager and several industry leading vulnerability scanners, ITSM solutions and content libraries, enable a single, consolidated and intelligent view of risks across the entire organization*.

    *CyberGRC Workshop - for a limited time AWS Customers can take advantage of a 'fee waived' CyberGRC Workshop facilitated by MetricStream subject matter experts. Ensure you are building a high-value, sustainable cyber risk management program. What you get: You'll leave with a path to optimize your cyber risk management program, rationalize spend while reducing risk.

    Highlights

    • Ready to Use from Day 1 with pre-packaged frameworks and embedded AI-powered recommendations
    • Fast Time to Value - 2 to 4 weeks to roll out and adopt
    • Easy Expansion - Grows with you as you expand your business

    Details

    Delivery method

    Deployed on AWS
    New

    Introducing multi-product solutions

    You can now purchase comprehensive solutions tailored to use cases and industries.

    Multi-product solutions

    Features and programs

    Vendor Insights

     Info
    Skip the manual risk assessment. Get verified and regularly updated security info on this product with Vendor Insights.
    Security credentials achieved
    (1)

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    MetricStream ConnectedGRC - Now Integrated with AWS Audit Manager

     Info
    Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    36-month contract (3)

     Info
    Dimension
    Description
    Cost/36 months
    CyberGRC - Prime
    IT Risk Assessments, Reporting, Scoring and Centralized Management
    $180,000.00
    ESGRC - Prime
    Environmental and Social Governance Solution
    $180,000.00
    CyberGRC Workshop
    Fee Waived interactive workshop on optimizing your cyber risk program
    $1.00

    Vendor refund policy

    Refund Policy is not applicable

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Resources

    Vendor resources

    Support

    Vendor support

    Please contact MetricStream Support by Email or Ticket on additional support support@metricstream.com 

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    100
    In Data Governance
    Top
    10
    In Centralized Risk Management, Compliance and Auditing, Security
    Top
    25
    In IT Business Management, Monitoring

    Customer reviews

     Info
    Sentiment is AI generated from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    1 reviews
    Insufficient data
    Insufficient data
    Insufficient data
    Insufficient data
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Pre-packaged Risk Management Frameworks
    Includes pre-configured frameworks for enterprise risk, operational risk, business continuity management, regulatory compliance, internal audit, and third-party risk management.
    AI-powered Risk Scoring and Assessment
    Utilizes pre-packaged risk scoring algorithms to generate risk heat maps and quantified risk ratings for rapid risk assessment and evaluation.
    Multi-domain GRC Coverage
    Provides integrated capabilities across business risk management, cyber risk management, IT compliance, policy management, and vendor risk assessment within a single platform.
    AWS Audit Manager Integration
    Integrates with AWS Audit Manager and industry-leading vulnerability scanners, ITSM solutions, and content libraries for consolidated risk visibility.
    Scalable SaaS-based Architecture
    Delivers flexible, scalable cloud-based infrastructure supporting modular product deployment from mid-sized organizations to global enterprises with configurable expansion capabilities.
    Multi-Framework Compliance Support
    Streamlines over 20 compliance frameworks, standards, and regulations including SOC 2, ISO 27001, HIPAA, PCI DSS, and GDPR
    Continuous Automated Monitoring
    Continuously monitors security controls across integrated applications and systems with automated alerts when controls are not operating effectively
    AWS Service Integration
    Integrates with 45+ AWS services and utilizes an AI engine built on AWS Bedrock
    Automated Evidence Collection
    Automatically collects evidence required for audit processes to streamline audit preparation
    Real-Time Compliance Posture Visibility
    Provides real-time compliance posture tracking and reporting capabilities for risk management and remediation
    Automated Evidence Collection
    More than 100+ integrations with core services such as AWS, Asana, Azure, G Suite, Google Cloud, Github, Gusto, JAMF, Okta and Slack automatically and continuously collect audit evidence and monitor cloud infrastructure for nonconformities.
    Machine Learning-Powered Questionnaire Completion
    Machine learning-powered RFP and security questionnaire completion with knowledge base management that pulls best answers from approved past responses.
    Continuous Monitoring and Automated Testing
    Continuous monitoring and automated tests across cloud infrastructure to identify and track compliance violations and security issues.
    Prebuilt Customizable Security Policies
    Standard policy templates that can be customized to meet organizational requirements while maintaining alignment with auditor and regulatory framework standards.
    Multi-Framework Compliance Support
    Support for multiple compliance frameworks including SOC 2, ISO 27001, ISO 27701, HIPAA, GDPR, CCPA, NIST 800-53, NIST 800-171, NIST CSF, NIST Privacy Framework, CMMC, PCI DSS SAQ-A, PCI DSS SAQ-D, Microsoft SSPA, and MVSP.

    Security credentials

     Info
    Validated by AWS Marketplace
    FedRAMP
    GDPR
    HIPAA
    ISO/IEC 27001
    PCI DSS
    SOC 2 Type 2
    -
    -
    -
    -
    -
    No security profile
    No security profile

    Contract

     Info
    Standard contract
    No
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    4
    1 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    0%
    100%
    0%
    0%
    0%
    0 AWS reviews
    |
    1 external reviews
    External reviews are from G2 .
    Pharmaceuticals

    One of my favorite QMS

    Reviewed on Dec 08, 2021
    Review provided by G2
    What do you like best about the product?
    This was the first QMS that I implemented in my career and because of that has naturally become the bar that I measure everything against. Since this time I have worked in 4 other QMS and I continue to appreciate MetricStream and wish for the functions that it offers. One of the things that I liked best was the Document Control module which makes searching for documents so easy. Not only can you search on the basic metadata you can search for terms within the document. Additionally, because this was implemented as a global system it gave each site view access to one another's procedures which made collaborating much easier.
    What do you dislike about the product?
    The system could be a bit buggy after vendor supplied upgrades are installed. The upgrades were intended to fix some issues but would inevitably end up breaking something else. That being said the vendor's support was very fast to address and correct these issues.
    What problems is the product solving and how is that benefiting you?
    Taking a paper-based system to be zero paper. This is a huge win in an industry where record retention is key. By implementing all of the QMS modules it also makes metric reporting super easy. This is much appreciated when creating APRs, management review and assessing compliance to procedural timelines.
    View all reviews