Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Reviews from AWS Marketplace

3 AWS reviews

External reviews

879 reviews
from G2

External reviews are not included in the AWS star rating for the product.


5-star reviews ( Show all reviews )

    Kunal J.

Daily Compliance Means Audit Season isn't Even a Day Long

  • March 01, 2023
  • Review provided by G2

What do you like best about the product?
Before Drata, I was managing an audit manually. It took almost 3 months between auditor pre-checklists, dropbox, talking to HR, Finance, and having a multi-day grueling audit to show all evidence.

I've been a Drata customer for 3 years, after the initial setup, ongoing audit has been virtually no added work. It connects to my HR/Finance/IT systems and securely keeps track of all evidence.

With drata, it took that same 3 months to get everything into the system, but I could do it on my schedule. After I got to 100% compliance (which you can see in the dashboard daily), it became seamless thereafter.

The auditor logs in, sees the evidence, and it is just one call, instead of multiple all day sessions.
What do you dislike about the product?
I wish it handled FedRamp and other very niche audits.
What problems is the product solving and how is that benefiting you?
SOC2, ISO27001 COmpliance


    Jason J.

Made our SOC 2 a breeze

  • February 21, 2023
  • Review provided by G2

What do you like best about the product?
SOC 2 can be a monster project of policy compliance and training. Drata's framework for managing all aspects made it easily manageable
What do you dislike about the product?
No downsides. Well worth the price. If you tried to do this using folders, spreadsheets and word docs you'd spend more in time and errors.
What problems is the product solving and how is that benefiting you?
As a Saas company with PII stored in our systems, security and data compliance is paramount to giving our customers peace of mind. Drata maks this easy.


    Yan A.

Drata to the rescue

  • February 16, 2023
  • Review verified by G2

What do you like best about the product?
Very helpful in getting your SOC2 in place and maintaining everything in compliance. I also liked the handholding they provided us with both SOC2 and the Drata platform itself. Kudos to Jordan, who has been instrumental in quickly getting us up and running.
What do you dislike about the product?
I wish they had a feature to automatically produce your SOC2 system description document. I've been told this feature is in the works, so I'm really looking forward to that!
What problems is the product solving and how is that benefiting you?
Getting SOC2 in place quickly and automating our compliance against all of the requirements that come with SOC2.


    Evan R.

Drata has helped us centralize our audit experience

  • February 13, 2023
  • Review verified by G2

What do you like best about the product?
Drata has helped my team centralize and organize our audit materials and artifact collection. Previously, we relied heavily on spreadsheets, shared Google Drive folders, and a lot of screenshots. Working with Laci, we've built out a lot of integrations that automatically pull evidence from the various systems in the scope of our audits, saving us a ton of time and manual work.
What do you dislike about the product?
There are still a few integrations that are not currently supported by Drata that would be helpful to further automate our compliance program. Specifically, background check evidence through HireRight and/or through the Workday API. Our org no longer uses a background check provider with a Drata integration, so for now we are manually linking evidence of background checks.
What problems is the product solving and how is that benefiting you?
Drata is reducing our reliance on spreadsheets and endless Google Drive folders, bringing our audit program into a single location that is but for the purpose.


    Austin H.

Compliance Controls Simplified

  • February 13, 2023
  • Review verified by G2

What do you like best about the product?
Drata is very perscriptive on what you need to t do to be compliant. It has very easy out of the box automation and integrations with key parts of our tech stack that make compliance a breeze. The CSM team is also great (Special shoutout to Laci).
What do you dislike about the product?
Long term we hope the risk library improves along with better slack notifications.
What problems is the product solving and how is that benefiting you?
Compliance for Security - ISO27001, PCI, SOC2, and HIPAA.


    Ed W.

Great Software for SOC2

  • February 13, 2023
  • Review verified by G2

What do you like best about the product?
Their technical teams and attention to product feature introduction and development. Our CSM is one of the best, that I've worked with in a long while. Shoutout to Laci!
What do you dislike about the product?
The product can be overwhelming, based on the organization and the security principles you are trying to tackle. The artifact and policy linking can be a little clumsy.
What problems is the product solving and how is that benefiting you?
SOC2 compliance automation for new digital properties.


    Glory .

Used to achieve SOC 2 compliance and enable visibility on controls

  • February 11, 2023
  • Review provided by G2

What do you like best about the product?
Three things stand out for us. 1) Drata is a product that is aligned with our compliance needs. 2) It is still delivering a strong ROI for us, saving time and making life easier with automation. 3) We used Drata to collect and demonstate evidence for the SOC 2 Type 1 and 2 audit. This contributed to a smooth process with our auditor.

Three key product highlights: integrations are compatible with our tech stack, visibility of controls for continous monitoring, mapping controls to frameworks (SOC 2 Type 1 and 2 + GDPR).

Our experience with Customer Success is excellent. We have been supported by Sara M and Victoria C who has seen our journey with SOC 2 as a start up without any security expertise in the early days. Throughout the past year, I have learned a lot more about maximising Drata's features. They have done this by proactively sharing help center guides, answering questions specific to our challenges and escalating to their Product/Engineering teams (when required). It is evident that they evaluate their processes with intent and are serious about what great looks like for us and themselves.
What do you dislike about the product?
From my experience, there is no dislike because it has been doing what we need it to do. To nitpick, for us the GDPR framework has require more manual evidence uploads compared to SOC 2. We try to maximise the control mapping feature by ensuring any security controls are also mapped to GDPR (particularly useful for demonstarting compliance with Article 5 and 32).
What problems is the product solving and how is that benefiting you?
Problems: huge task of organising SOC 2 tasks and evidence collection, ongoing monitoring of control effectiveness, poor visibility of controls across the teck stack. Drata is benefiting us by: providing a meaningful view of controls that is mapped against industry frameworks (SOC 2 and GDPR), flagging issues that need our attention, visibility that facilitates conversations with key stakeholders in the company. Time saved and stress reduced.


    Matthew J.

Powerful Automation and Clean Design

  • February 08, 2023
  • Review verified by G2

What do you like best about the product?
I like how the software provides continuous automation monitoring and helps you build policies. I also like how it helps you onboard and off-board employees. Their real-time customer support gives me quick access to answers, and my dedicated Account Manager is always there when I need her. Finally, I love how they continue adding and updating existing frameworks.
What do you dislike about the product?
Completing compliance can take a long time. I don't think this is a Drata thing, but more to do with the amount of work required for completing an audit-ready compliance.
What problems is the product solving and how is that benefiting you?
It is helping us become HIPAA, GDPR and NIST compliant. It guides us along the steps needed and prevents us from missing anything important along the way. The monitoring of our AWS services has helped us find unused infrastructure and also tighten down IAM polices.


    Hospital & Health Care

Exceptional Customer Service and Highly Innovative Features

  • February 01, 2023
  • Review provided by G2

What do you like best about the product?
Drata has provided our company with invaluable support that has led to improving our security posture. They have consistently proved that are very reliable. Specifically, our customer success manager, Sam, is exceptionally responsive and has deep knowledge of the platform. Their customer service should be an example for all companies to mirror.
What do you dislike about the product?
So far, we have not experienced any issues with Drata. We are looking forward to continuing our partnership with them!
What problems is the product solving and how is that benefiting you?
Based on our experience with Drata so far, I am confident that we have vastly improved our privacy and security practices. They provide a variety of easy-to-use features to improve our security posture. For example, security training for our team, policy templates mapped to controls, integration with AWS, and frequent updates to add new frameworks and features to meet regulations. Overall, it provides a one-stop solution for managing all the pieces for compliance, with new frameworks being added frequently.


    Nick J.

An indispensable tool in our SOC2 compliance journey

  • January 27, 2023
  • Review verified by G2

What do you like best about the product?
Drata took the guesswork out of our compliance gaps by clearly presenting which aspects of our system needed attention. As a result, we formulated a clear strategy of action items to make us audit-ready. Not only that, but their system provides a streamlined and central evidence-collection process, helping us to stay organized. Lastly, their client support is second to none. I can't count how many times we messaged their live support with compliance and other questions. Each time, they provided clear guidance. I highly recommend Drata to anyone looking to bring their company into compliance with industry standards.
What do you dislike about the product?
N/A. I can't think of any issues that we had with Drata.
What problems is the product solving and how is that benefiting you?
Improving our security posture and meeting SOC2 certification requirements.