ComplyGuideComplyGuide
HomeSoftwareLearn
Submit a Tool
ComplyGuideComplyGuide

Find and compare the best compliance automation tools. Trusted by thousands of compliance professionals.

Directory

  • All Vendors

Frameworks

  • SOC 2
  • HIPAA
  • GDPR
  • ISO 27001
  • PCI DSS
  • FedRAMP
  • NIST CSF

Resources

  • Learn

For Vendors

  • Submit a Tool
  • Premium Subscription
  • Claim Your Listing

Company

  • About
  • Contact
  • Privacy Policy
  • Terms of Service

© 2026 ComplyGuide. All rights reserved.

Made for compliance professionals

Get a RecommendationBrowse Tools
Home / Vendors / Drata vs Kroll

Drata vs Kroll

Choosing between Drata and Kroll for compliance automation? Both support SOC 2, HIPAA, PCI DSS, while Drata also covers GDPR, ISO 27001. This comparison breaks down ratings, pricing, framework coverage, and key differences to help you decide.

Reviewed by ComplyGuide Editorial Team·Updated March 2026
Quick Verdict

Frameworks

Drata (5 vs 3)

Starting Price

Tied ($Contact for pricing/mo)

User Rating

Drata (4.7/5)

Drata logo

Drata

4.7/5 (0 reviews)

Founded in 2020, Drata is the world's most advanced security and compliance automation platform. It continuously monitors and collects evidence of a company's security controls while streamlining compliance workflows end-to-end. It holds a excellent 4.7/5 rating based on 0 reviews. Headquartered in San Diego, CA. The company has 501-1000 employees. It supports SOC 2, HIPAA, GDPR, ISO 27001, PCI DSS.

SOC 2
HIPAA
GDPR
ISO 27001
PCI DSS
Kroll logo

Kroll

4.2/5 (0 reviews)

Founded in 1972, Kroll offers comprehensive compliance and risk management services including SOC 2, PCI DSS, and HIPAA assessments backed by decades of cybersecurity expertise. It holds a strong 4.2/5 rating based on 0 reviews. Headquartered in New York, NY. The company has 1000+ employees. It supports SOC 2, HIPAA, PCI DSS.

SOC 2
HIPAA
PCI DSS

Side-by-Side Comparison

FeatureDrataKroll
Rating4.7/5 (0 reviews)4.2/5 (0 reviews)
Starting PriceContact for pricingContact for pricing
Founded20201972
Company Size501-10001000+
HeadquartersSan Diego, CANew York, NY
Frameworks53
Pricing Plans32

Framework Support

FrameworkDrataKroll
GDPR
HIPAA
ISO 27001
PCI DSS
SOC 2

Pricing Comparison

Drata Pricing

  • StartupCustom
  • GrowthCustom
  • EnterpriseCustom
View full pricing

Kroll Pricing

  • AssessmentCustom
  • ManagedCustom
View full pricing

Verdict

In summary: Drata has a notably higher user rating (4.7 vs 4.2). Also, Drata supports additional frameworks (GDPR, ISO 27001) that Kroll does not cover. Also, Kroll has been in the market longer (since 1972), while Drata (since 2020) brings a more modern approach. Ultimately, the best choice depends on your organization's specific compliance requirements, team size, and budget. We recommend requesting demos from both vendors before committing.

View DrataView Kroll

When to Choose Each

Choose Drata if:

  • You need GDPR or ISO 27001 compliance support
  • You need multi-framework compliance across 5 standards
  • You want more pricing flexibility (3 plans to choose from)
  • Peer reviews matter to you (4.7/5 user rating)
  • You want a more modern platform built with newer technology

Choose Kroll if:

  • You prefer an established vendor with a longer track record (since 1972)

Ready to decide?

Get pricing information directly from these vendors.

Drata

Get Pricing Info

Kroll

Get Pricing Info

More Comparisons

Compare Drata

Sprinto logoDrata vs Sprinto1Password logoDrata vs 1PasswordWiz logoDrata vs WizAll Drata alternatives →

Compare Kroll

Sprinto logoKroll vs SprintoWiz logoKroll vs Wiz1Password logoKroll vs 1PasswordAll Kroll alternatives →