How We Price

Find the Right Plan for Your GRC Program

Drata offers two platform bundles: Drata Trust Management Platform for your GRC program needs, and SafeBase Trust Center + AI Questionnaire Assistance. Find the right plan for you

Drata GRC PlatformSafeBase Trust Center + AIQASee Features

Drata Foundation

Everything you need to start your program and get audit-ready

Foundation includes:

  • Up to 50 FTE

  • 1 Pre-mapped framework (limited to SOC 2, ISO 27001, Cyber Essentials, HIPAA, GDPR)

  • Pre-built integrations

  • SafeBase by Drata Trust Center Standard

  • SafeBase by Drata AI Questionnaire Assistance Standard

  • Risk Management Standard

  • Custom Controls

  • Vendor Risk Management Standard

  • Compliance as Code Standard

  • Open API


Add-ons:


  • Additional frameworks

  • User Access Review


Drata Advanced

Build a scalable, customized GRC program

Everything in Foundation, plus:

  • Plus the option to replace your pre-mapped framework with any available framework

  • Custom Connections & Tests  

  • Custom fields & formulas 


Add-ons:

  • Additional frameworks

  • User Access Review

  • Risk Management Pro

  • Workspaces

  • Custom Frameworks


Drata Enterprise

Proactively optimize and maintain a mature GRC program

Everything in Advanced, plus:

  • Risk Management Pro

  • Compliance as Code Pro

  • Vendor Risk Management Pro

  • User Access Review


Add-ons:

  • Additional frameworks

  • Workspaces

  • Additional Custom Tests

  • Custom Frameworks


SafeBase Trust Center + AIQA

AI-powered Trust Center to share information and answer questionnaires

SafeBase Foundation

Start your world-class Trust program with minimal lift

Foundation includes:

  • Trust Center Standard package with 25 approved domains    

  • AIQA Standard package with 10 questionnaires



Add-ons:

  • Additional approved domains

  • Additional questionnaires


SafeBase Advanced

Proactively inspire confidence in your security program

Everything in Foundation, plus:

  • Trust Center Pro package  

  • AIQA Standard package



Add-ons:

  • Additional approved domains

  • Additional questionnaires

  • Published product portals 

  • Custom permission profiles


SafeBase Enterprise

Enterprise-grade features allow you to confidently operate at scale

Everything in Advanced, plus:

  • Trust Center Premier package  

  • AIQA Pro package


Add-ons:

  • Additional approved domains

  • Additional questionnaires

  • Published product portals



Want to See Compliance Automation in Action?

Compare Plans

Compliance That Scales With You

The following features are not a comprehensive list of all solutions available. For an exact breakdown, contact a Drata sales representative today.

Foundation

Advanced

Enterprise

Compliance Automation

Included in Drata GRC Platform

Pre-mapped frameworks

Automated evidence collection

Multiple control owners

Export raw JSON evidence

Audit Hub

Policy Templates

Compliance as Code

Compliance as Code Pro

Open API

Governance

Risk Management

Vendor Risk Management

Configurability

Trust Center

AI Questionnaire Assistance

Frequently Asked Questions