Average Ratings 0 Ratings
Average Ratings 1 Rating
Description
Drata is an agentic trust management platform for automating governance, risk, compliance, security assurance, and third-party risk management processes. Its Enterprise GRC capabilities bring controls, risks, policies, and evidence into a centralized system while allowing organizations to map controls across multiple frameworks and reuse compliance work. Continuous compliance automation collects evidence, monitors controls, identifies issues, and provides guided remediation to help teams remain audit-ready as their environments change. Drata's Trust Center provides a secure location where prospects, customers, and other stakeholders can review an organization's security posture, request documents, and obtain answers to trust-related questions. AI-powered questionnaire automation supports the questionnaire lifecycle from intake and triage through processing and response generation, using an evolving knowledge base to draft consistent answers. Third-party risk management uses AI agents to create assessment criteria from existing questionnaires, collect documents from vendor Trust Centers, perform risk assessments, and conduct vendor follow-ups. Drata also provides AI Agent Governance capabilities designed to discover AI agents within an enterprise, enforce organizational policies before agent actions execute, and produce records of agent decisions for auditing. The platform supports frameworks and regulations including SOC 2, ISO 27001, ISO 42001, GDPR, HIPAA, PCI DSS, DORA, FedRAMP, CMMC, and custom frameworks. Drata is designed to support organizations ranging from startups establishing their first compliance programs to enterprises managing governance, risk, compliance, and trust requirements across multiple business units and regions.
Description
TrustMAPP® is the pioneer in Cybersecurity Performance Management.. Recognized by Gartner as a leader in Cybersecurity Performance Management and Cybersecurity Maturity Assessments, TrustMAPP is used by organizations across the globe, TrustMAPP provides information security leaders an ability to quickly measure, quantify, and communicate meaningful control performance, track improvement processes, forecast investment efforts, and quickly build narratives to executive stakeholders. TrustMAPP provides remediation guidance on individual controls based on maturity scores and provides resource effort investment and financial investments to forecast future requirements for cybersecurity funding. TrustMAPP provides decision science and forecasting necessary to elevate the cybersecurity discussion in the boardroom. Information security leaders benefit from alignment with key business objectives and dynamic analytics and report-building capabilities. Information security leaders benefit from a new language that resonates with those who know little (and care even less) about the technical aspects of cybersecurity program management.
API Access
Has API
Yes
API Access
Has API
No
Integrations
Jira
Yes
Adapt
Yes
Auditive
Yes
Bitbucket
Yes
Blink
Yes
Certn
Yes
Checkr
Yes
Cisco Secure Cloud Analytics
No
DigitalOcean
Yes
Fallax
Yes
Integrations
Jira
Yes
Adapt
No
Auditive
No
Bitbucket
No
Blink
No
Certn
No
Checkr
No
Cisco Secure Cloud Analytics
Yes
DigitalOcean
No
Fallax
No
Pricing Details
$10,000/year
Free Trial
No
Free Version
No
Pricing Details
Pricing based on per assessment on an annualized basis.
Free Trial
Yes
Free Version
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
Yes
Mac
Yes
Linux
Yes
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
Yes
In Person
No
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
Yes
In Person
Yes
Vendor Details
Company Name
Drata
Founded
2020
Country
United States
Website
drata.com
Vendor Details
Company Name
TrustMAPP
Founded
2019
Country
United States
Website
trustmapp.com
Product Features
Audit
Alerts / Notifications
Yes
Audit Planning
Yes
Compliance Management
Yes
Dashboard
Yes
Exceptions Management
Yes
Forms Management
No
Issue Management
No
Mobile Access
Yes
Multi-Year Planning
Yes
Risk Assessment
Yes
Workflow Management
Yes
Cloud Security
Antivirus
No
Application Security
No
Behavioral Analytics
No
Encryption
No
Endpoint Management
No
Incident Management
No
Intrusion Detection System
No
Threat Intelligence
No
Two-Factor Authentication
No
Vulnerability Management
No
Compliance
Archiving & Retention
No
Artificial Intelligence (AI)
No
Audit Management
Yes
Compliance Tracking
Yes
Controls Testing
Yes
Environmental Compliance
No
FDA Compliance
No
HIPAA Compliance
No
ISO Compliance
No
Incident Management
No
OSHA Compliance
No
Risk Management
Yes
Sarbanes-Oxley Compliance
No
Surveys & Feedback
No
Version Control
Yes
Workflow / Process Automation
Yes
GRC
Auditing
Yes
Disaster Recovery
No
Environmental Compliance
No
IT Risk Management
Yes
Incident Management
No
Internal Controls Management
Yes
Operational Risk Management
Yes
Policy Management
Yes
Integrated Risk Management
Audit Management
No
Compliance Management
No
Dashboard
No
Disaster Recovery
No
IT Risk Management
No
Incident Management
No
Operational Risk Management
No
Risk Assessment
No
Safety Management
No
Vendor Management
No
Product Features
Business Performance Management
Ad Hoc Reports
Yes
Ad hoc Analysis
Yes
Budgeting & Forecasting
Yes
Consolidation / Roll-Up
Yes
Dashboard
Yes
Key Performance Indicators
Yes
Predictive Analytics
No
Qualitative Analysis
Yes
Quantitative Analysis
Yes
Scorecarding
Yes
Strategic Planning
Yes
Compliance
Archiving & Retention
Yes
Artificial Intelligence (AI)
No
Audit Management
Yes
Compliance Tracking
Yes
Controls Testing
Yes
Environmental Compliance
No
FDA Compliance
No
HIPAA Compliance
Yes
ISO Compliance
Yes
Incident Management
No
OSHA Compliance
No
Risk Management
Yes
Sarbanes-Oxley Compliance
Yes
Surveys & Feedback
Yes
Version Control
No
Workflow / Process Automation
Yes
Cybersecurity
AI / Machine Learning
Yes
Behavioral Analytics
No
Endpoint Management
No
IOC Verification
No
Incident Management
No
Tokenization
No
Vulnerability Scanning
No
Whitelisting / Blacklisting
No
Data Governance
Access Control
No
Data Discovery
Yes
Data Mapping
Yes
Data Profiling
No
Deletion Management
No
Email Management
No
Policy Management
Yes
Process Management
Yes
Roles Management
No
Storage Management
No
Integrated Risk Management
Audit Management
Yes
Compliance Management
Yes
Dashboard
Yes
Disaster Recovery
Yes
IT Risk Management
Yes
Incident Management
No
Operational Risk Management
Yes
Risk Assessment
Yes
Safety Management
No
Vendor Management
Yes
Risk Management
Alerts/Notifications
Yes
Auditing
Yes
Business Process Control
Yes
Compliance Management
Yes
Corrective Actions (CAPA)
No
Dashboard
Yes
Exceptions Management
Yes
IT Risk Management
Yes
Internal Controls Management
Yes
Legal Risk Management
No
Mobile Access
No
Operational Risk Management
Yes
Predictive Analytics
No
Reputation Risk Management
No
Response Management
No
Risk Assessment
Yes