Which customer reduced their time spent preparing for audits from 500 hours to 40 hours per year?
Lemonade
How often does a company get an ISO recertification audit?
Every 3 years
Which competitor re-branded from their original name in March? What is the new name?
Laika changed to Thoropass
What year was Drata founded?
2020
Which two managers currently live in the state they were born in ?
Ashton & Victoria
Which customer saved $100k a year by not having to bring on additional resources to manager the ISO 27001 journey?
Immediation
How many frameworks does Drata support out of the box?
13
Name 3 Competitors outside of Vanta, Secureframe, Tugboat and Thoropass
Scrut, Scytale, Sprinto, Carbide, Hyperproof, Strike Graph
How long did it take Drata to reach Unicorn status?
10 months
Which manager had three front teeth kicked out in a soccer game?
Kirsten
Which customer saved 75% of time by migrating from Vanta to Drata?
Deeper Signals
Why is our integration with AWS so important in relation to SOC 2?
The most controls come from infrastructure
What is the biggest reason we win against Tugboat and list 1 migration (cannot use HeadsUp)
Which founder was on American Ninja Warrior?
Adam and Troy
Which manager has eaten 24 tortillas in one sitting?
Kayla
Which customer not only uses Drata for themselves but also to service their customers?
AssuranceLab
3 policies that are commonly recommended for soc 2
Could be:
Acceptable Use Policy
Asset Management Policy
Backup Policy
Data Protection Policy
Incident Response Policy
Information Security (IS) Policy
Physical Security Policy
Risk Assessment Policy
Software Development Life Cycle Policy
System Access Control Policy
Vendor Management Policy
Vulnerability Management Policy
2 reasons why we win against Secureframe & 1 customer who has migrated from Secureframe
Which co-founder has a cartoon gif when you hover over his photo on the company website "Meet the Founders" section?
Daniel
Which manager has eaten a pound and a half of bacon in one sitting?
Jay
Which customer reduced their time spent on ISO 27001 in half?
Thnks
5 frameworks Drata supports & what they pertain to
SOC 2 - criteria for managing data - protecting customer data
ISO 27001 - ISMS to keep consumer data safe
NIST CSF - Critical Infrastructure Cybersecurity
HIPAA - safeguarding protected health information
GDPR - Regulation around data in the EU
CCPA - The California Consumer Privacy Act of 2018 (CCPA) gives consumers more control over the personal information that businesses collect about them
PCI DSS - maintain secure environment for companies who process credit card data
CMMC - Implementing cybersecurity acorss DIB (defense industrial base)
Microsoft SSPA - Get and stay Microsoft SSPA compliant to maintain your Microsoft supplier and partner status
NIST SP 800-53 - catalog of control for US fed Info systems (minus national security)
NIST SP 800-171 - Confidentiality of Controlled Unclassified Info (CUI)
ISO 27701 - continually improving a privacy information mgmt system
FFIEC - online banking & financial institutions
3 reasons why we win against vanta and 3 customers who have migrated (can't use notion, vercel, deeper signals or loom)
What was the name of the company before the founders decided on Drata?
SocPilot
Which manager's college mascot was a sailfish?
Dylan