Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Reviews from AWS Marketplace

3 AWS reviews

External reviews

762 reviews
from G2

External reviews are not included in the AWS star rating for the product.


    Max G.

Simply the best automation and support system for InfoSec on the market

  • August 18, 2022
  • Review verified by G2

What do you like best about the product?
The platform itself is very well designed being naturally intuitive while offering an impressive array of automation tools.

But the real stand out is the human element. My account manager Morgan was very helpful when I was starting up and have provided oversight throughout the process. My compliance manager Rick meanwhile has been nothing but outstanding. He has not only always been quick to respond, but has taken various proactive steps that have both helped me evolve my Information Security Management System as well as my own personal knowledge. The support he has provided has gone above and beyond my expectations and really makes Drata second to none. As a result I now strongly recommend Drata to anyone looking to automate their system (as well as planning to use Drata for all future projects I may endeavour on).
What do you dislike about the product?
To be honest their isn't much I dislike about the platform or the support I have received. If I had to nitpick I would like to see the Drata security training for staff onboarding onto the platform to be improved and expanded as it currently feels a bit bare bones in terms of content.
What problems is the product solving and how is that benefiting you?
Drata has solved a variety of issues. Mainly it has allowed me to create and implement an ISMS that is coherent and doesn't collapse under its own weight.


    Cody K.

Streamlines your path to compliance and security

  • August 17, 2022
  • Review verified by G2

What do you like best about the product?
I've gone through SOC2 compliance a couple of times in the past and Drata made everything insanely easy. With Drata, we were able to quickly identify changes needed to be compliant and offered the reporting we needed for our customers. It gave us a central location for all our technical compliance that the team can rally around. Our main contact, Ali, has been amazing and answered any questions we've had throughout the process at lightning speed. Such a great product and team!
What do you dislike about the product?
Couple of things I've run into with our time using Drata: Trust Center cost and monitoring exclusion limitations. For the Trust Center, it's an awesome tool that we use quite a bit to keep manual security requests down but the cost is a bit steep for the offering. There are also no public APIs for you to build something similar if you want to fully integrate it into your website.

For the monitoring exclusion limitations, the monitoring is great... almost too great. We have some repositories that are monitored which simply contain challenges for engineering candidates so they don't need to be monitored like they're production code. Drata will pick up on those every time! I wish we could fully exclude these repositories so we don't have to manually fix these events.
What problems is the product solving and how is that benefiting you?
Drata is helping us acquire SOC2 compliance to give us a better security posture and add more trust between us and our customers. It gives us a central tool to monitor our compliance and fix things right away instead of once every couple months.


    John H.

Great integrations take so much of the work out of SOC2

  • August 17, 2022
  • Review verified by G2

What do you like best about the product?
The built-in integrations with our existing tools are what make Drata amazing. Hooking up a few integrations and having compliance tests go from red to green is so gratifying! It took a lot of work out of SOC2, because Drata gathers the evidence for us. When there are problems, Drata lets us know, and provides great guidance on how to fix things and come back into compliance.

The other great feature of Drata is their agent. It is lightweight and not intrusive. In previous roles I've dealt with MDM systems, which are always terrible, clunky and engineers hate having their agents run. You just kind of forget about the Drata agent and it doesn't get in your way.
What do you dislike about the product?
My only complaints are things that aren't really Drata's fault. Some API's don't expose MFA support unless you are are on an enterprise plan (I'm looking at you Heroku), so Drata can't automatically gather that evidence. But once our CS contact (hey Ali, you're great!) let us know it was easy to gather that evidence manually and mark the tests for exclusion.
What problems is the product solving and how is that benefiting you?
Drata got us from barely knowing what SOC2 is, to being audited and compliant on a time scale I would not have believed. Honestly, when they told us possible timelines at kickoff I literally did not believe them, but it worked out and Drata made it possible.


    Catherine N.

Top-Tier Support!

  • August 17, 2022
  • Review provided by G2

What do you like best about the product?
The support at Drata is top tier, specifically from our CSM, Ali!

The Drata dashboard and monitoring pages are easy to navigate but if there was ever a question our team had, Ali was always an email reply away. While prepping to achieve SOC 2 Type 1 Compliance, the Drata team made sure we were set up for success by having monthly meetings with us and a final controls check before the big day!

Drata also continues to add to their product, the Security Report by Drata and the Trust Center are two things our customers love!!

Highly recommend using Drata for all things security and compliance!
What do you dislike about the product?
Nothing at this time - Drata is a large part of our security and compliance processes and we couldn't imagine our life without it!
What problems is the product solving and how is that benefiting you?
Drata's real-time monitoring of controls gives our security team ease, that items will be addressed in a timely manner.


    Computer Software

Drata has been a huge help with the SOC process

  • August 17, 2022
  • Review verified by G2

What do you like best about the product?
Automation, central records repository, wizard-like interface, simple connections to existing systems / infrastructure
What do you dislike about the product?
There have been occasional bugs with the agent.
What problems is the product solving and how is that benefiting you?
Drata is simplifying and automating the process of creating and collecting artifacts to support our SOC2 certification.


    Lyubov K.

Drata is all-in-one advanced and easy-to-use comliance tool

  • August 16, 2022
  • Review verified by G2

What do you like best about the product?
Drata has an amazing support team who are always ready to assist and answer any type of compliance questions. It has been a great asset for us as a growing company in a security and compliance program.
They also have comprehensive documentation where a company can get familiar with various topics.
Moreover, all controls are organised neatly and displayed on simple-to-understand dashboards around a chosen framework (SOC 2 in our case). It is easy for us to see what SOC 2 requirements we have to meet, what issues we still need to resolve, and what is our progress.
Overall, our company is having an amazing experience with Drata so far and this has been a very wise choice.
What do you dislike about the product?
We have not found any issues in working with Drata platform.
What problems is the product solving and how is that benefiting you?
Drata has a neat organization of compliance requirements that help companies move toward meeting security, audit, and compliance goals.
For us, it would have been a very tough task to organize our tasks around SOC 2 requirements having no prior expertise in this. Drata takes this responsibility and helps solve issues in a fast and effective way.


    Yana L.

The best tool to track your security compliance

  • August 04, 2022
  • Review verified by G2

What do you like best about the product?
Drata is simply the best tool for any company out there who knows or does not know where to start with their internal cybersecurity program or when preparing for the audit pursuing security compliance with certain frameworks like ISO 27001, SOC 2, HIPAA, PCI DSS, and many others. It might be very surprising, but you don't even need to be a security professional to be able to start managing your security processes with the help of Drata: they have it all ready for you with automated monitoring of your security controls relevant and up-to-date with a certain framework of your choice, an educational portal, etc.
In total, I have evaluated 6 major vendors before going with Drata, and after reviewing over 20 different points, Drata had a significant advantage over its competitors. They have the highest number of available integrations, and the pricing model was also much more clear and more transparent compared to other companies. We have just received our SOC 2 Type 2 report with no exclusions thankfully to Drata's platform and continuous support from the whole team, who has always been available for weekly calls, experience and knowledge sharing. Drata's compliance manager with extensive audit experience has been always reachable by Slack, which was a huge benefit for our company.
What do you dislike about the product?
More of a suggestion: would be great to get custom integrations with other systems, and also to be able to release policies for employees' acceptance based on the relevance (currently all employees have to review and accept all available policies regardless of their department). For example, HR department should not have to review policies related to SDLC, etc.
What problems is the product solving and how is that benefiting you?
Security frameworks automation, controls status monitoring, policies management, risk assessment, vendor management.


    Dudu Y.

Very good experience, controlling my compliance needs

  • July 31, 2022
  • Review verified by G2

What do you like best about the product?
Policy center
Personnel
Security training
DRATA agent for work stations compliance.
What do you dislike about the product?
The asset list isn't so organized.
.
.
.
.
.
What problems is the product solving and how is that benefiting you?
A way for managing & controlling your compliance needs.


    Stephanie C.

Helpful

  • July 29, 2022
  • Review verified by G2

What do you like best about the product?
A repository for policies, monitoring capability (and clarity about those not monitored, risk and vendor and personnel management (all implying the connections to applicable systems), ability to export data, ease of use. The information provided on the monitored tests is gold - how to fix, what's wrong, the JSON details on drill-down. The ability to say what's in/out of scope.
What do you dislike about the product?
Adding a review status for policies would be helpful. The training isn't horrid, but could be expanded to offer dev training, for instance.
What problems is the product solving and how is that benefiting you?
Policy "truth", evidence of reviews for risk and vendor reviews, monitoring of infrastructure. Cleaner communication with auditors about evidence.


    Security and Investigations

Fantastic experience with Drata

  • July 29, 2022
  • Review verified by G2

What do you like best about the product?
Drata has made the compliance process exceedingly simple, especially for a company going through a compliance audit for the first time. Everything is broken down to be user friendly and also customisable for your business. In addition, our Point of Contact, Ali, has been unbelievably helpful. She is always very responsive and goes above and beyond to answer our questions, no matter what they entail!
What do you dislike about the product?
There is very little to dislike about Drata! It would be helpful to have examples of what evidence could be provided for each of the controls, but that is more user inexperience than something the tool itself is lacking.
What problems is the product solving and how is that benefiting you?
Drata is helping us achieve and maintain security compliance, while assisting with monitoring and ensuring best practice is kept and upheld.