17 years helping Israeli businesses
choose better software

Compliance Manager GRC Reviews

About Compliance Manager GRC

Compliance Manager GRC is purpose-built to easily automate a wide range of compliance assessment, management and documentation tasks.

Learn more about Compliance Manager GRC

Pros:

This product has some decent integrations and a few significant time saving items.

Cons:

It's been two weeks and they STILL haven't identified what the underlying problem is.

Compliance Manager GRC ratings

Average score

Ease of Use
3.7
Customer Service
3.8
Features
3.6
Value for Money
3.4

Likelihood to recommend

5.5/10

Compliance Manager GRC has an overall rating of 3.8 out 5 stars based on 13 user reviews on Capterra.

Have you used Compliance Manager GRC before?

Share your experiences with other software buyers.

Filter reviews (13)

Zackary
President in US
Information Technology & Services, 11–50 Employees
Used the Software for: 1+ year
Reviewer Source

An Essential Part of Our Compliance Portfolio

5.0 2 years ago

Comments: We have clients that require maintenance of their compliance status for both DoD work and HIPAA.Compliance manager helps us maintain these clients in a state of continued compliance via a variety of means and tools!

Pros:

Compliance manager is easy to setup and use.It functions as a vital tool in our toolkit to ensure compliance for our client base.We have utilized other solutions in the past. However, the ability to integrate direct client interaction with scanning and reviewing makes it the perfect fit for our customers and us.The interface is intuitive, the scanning and integration is seamless and the centralized storage location of compliance documentation makes coordination and implementation much less painful.

Cons:

The interface for auditing Active Directory could use a little fine-tuning. It would be nice to be more granular with OU filtering.I think that integration would be the only change I could recommend.

Joel
CIO in US
Information Technology & Services, 11–50 Employees
Used the Software for: 1-5 months
Reviewer Source

Alternatives Considered:

A huge step forward for v2.0, excited to see more to come for GRC

4.0 2 years ago

Comments: I was glad to staff with RFT because of the improvements of GRC, coupled with Vulscan and NDPro. It is learning a new product, but extends the value of our services to our hybrid work with local devices, networks and cloud SaaS, PaaS, IaaS.

Pros:

The ability to craw from multiple data collections and against multiple standards. E.G. Our HIPAA clients also need to be PCI SAQ-C complaint but I never conducted a PCI assessment before because it required a whole new effort. Now we can blend them and charge for the effort appropriately.

Cons:

The departure from a question-driven interface requires more time to review the standard to identify what would be considered compliant. It has always been helpful to have the standard immediately accessible if a question required clarification. This takes longer...

Gordon
Vice President, Managed Services in US
Information Technology & Services, 51–200 Employees
Used the Software for: 1+ year
Reviewer Source

Kaseya does not properly support its existing customers

3.0 2 years ago

Comments: My overall experience with Compliance Manager GRC has been disappointing. Not because of the product, because when it does work it does the job, but the development team is regularly pushing out new features and things which breaks other things, so their quality control leaves a lot to be desired, and as this is a critical toolset for delivering compliance assessments, having it be so unreliable is unacceptable. When we first started working with RapidFire Tools it was the Network Detective product. That worked well so we then purchased Compliance Manager when it first came out, shortly after RFT was acquired by Kaseya. Unfortunately, the quality assurance for new releases and support has gone way down since they became part of Kaseya. I won't even consider another Kaseya product at this time.

Pros:

I like the ability to customize the assessment and controls for the specific engagement. I also like the ability to "assign" some tasks to subject matter experts involved in the assessment. Right now, the product doesn't make it easy for the subject matter experts to see the guidance for the specific standard for which I'm asking them to upload relevent control evidence, but that is a feature which, I hope, gets implemented and when it does will make it much easier to step customers through the gathering of the evidence rather than having to continue to rely on spreadsheets back and forth (which we still have to do even with Compliance Manager GRC).

Cons:

The things which I like the least about the software is the customer support for when things are broken. There have been numerous issues with both Compliance Manager and Compliance Manager GRC which have broken in the two years we've been using it and while I've requested a root cause analysis no less than three times, even from [sensitive content hidden] of the Compliance Manager product himself, I've received nothing. I've had to cancel compliance final deliverable meetings with customers because the software performed so poorly and even after escalating this as a "Sev-1" to the front-line, still got no response or fix for days.If the question is a simple one that can be solved by the front-line engineers, the support is pretty good, but anything that has to get escalated to the development team for investigation rarely, if ever, gets a proactive response back. In the last case, they clearly did something that broke one of the ways that the modal worked for the Requirements Analysis portion, it was working one day, was broken the next, and I noted that there was an update on that day. It's been two weeks and they STILL haven't identified what the underlying problem is! I run development shops, and step 1 is always, "what did we just push out and how did it impact things," but apparently that's too much process for Kaseya's development team. It's still broken, 2 weeks later.

Sunny
Sr. Strategic Advisor for Compliance and Security in US
Information Technology & Services, 501–1,000 Employees
Used the Software for: 6-12 months
Reviewer Source

Not ready for CMMC or 800-171 compliance

4.0 2 years ago

Comments: We tried to get out of it when we realized how much it lacked in the CMMC realm, but the company ties you to a three year agreement, which we desperatly tried to get out of. The one saving grace they have is, they will let you give up the licenses and use a different product of theirs (like ITGlue) instead, which should let us recapture the cost.

Pros:

This software does a really good job on collecting data off your network which will be useful in an audit. Additionally it gives you really good ways of tracking certain data for the cleint.

Cons:

The software is not geared toward helping you meet the requirements for an audit like CMMC. Compare this to a program like FutureFeed.co (specifically for doing CMMC Audits) and it falls down in letting you know where you are in the process, building your SSP and POA&M, doing your SAC and more. It is much more an extension of their Network Detective data gathering program, and much less a CMMC compliance walk through program.

George
Chief Growth Officer in US
Information Technology & Services, 1,001–5,000 Employees
Used the Software for: 2+ years
Reviewer Source

Compliance Burden Automation and Standardization

4.0 2 years ago

Comments: Compliance Manager provided three keys improvements:1) Automation for what had been a manual discovery process 2) Standardizing processes and deliverables across multiple compliance domains 3) Foundation for perpetual service offerings and deliverables

Pros:

Using Compliance Manager as a compliance tool for multiple domains - HIPAA, NIST CSF, Cyber Insurance, and GDPR.

Cons:

The scanning installation is fine for on-premises Windows environments; however, cumbersome for non-Windows devices. Cloud support for scanning is limited and a big minus. Matches well with smaller to medium size scope, but the logistics of installing a scanner is challenging for large environments. A request is to provide mapping of control areas between compliance domains, and integrated evidence cataloging and pointers.

Wes
Senior Compliance Specialist in US
Information Technology & Services, 51–200 Employees
Used the Software for: 2+ years
Reviewer Source

Compliance Manager

3.0 2 years ago

Comments: I have been able to use Compliance Manager to replace our use of Network Detective when doing PCI and HIPAA risk assessments.

Pros:

It used to be THE software to use. The thing I like the most is the comprehensive set of reports. Very nice integration of HIPAA interview (On-Site Survey), walkthrough notes, network scan, secondary data collection worksheets, etc. Nothing like it on the market.

Cons:

I am having MAJOR problems setting up a new HIPAA risk assessment. I'm trying to set up an assessment for the Center for Advanced Orthopedics, and it's not at all intuitive and not easily navigable. I never had this problem in the past. Been working on it all morning, I'll send a note to Support shortly but saw this survey in my email

Ravi
Ravi
CEO in US
Verified LinkedIn User
Computer & Network Security, 2–10 Employees
Used the Software for: 1+ year
Reviewer Source

Yet another exceptionally adequate kaseya product

4.0 last year

Pros:

This product has some decent integrations and a few significant time saving items. It's pretty easy to use.

Cons:

It's really expensive for what it is. The lack of ISO standards and lack of SOC make this really an MSP direct to client (and US only).

gloria
CEO in US
Marketing & Advertising, 51–200 Employees
Used the Software for: 2+ years
Reviewer Source

Compliance Manager GRC

4.0 2 years ago

Comments: We have really been able to get our Compliance in order

Pros:

Doesn't make you an expert but really helps move the process along.

Cons:

You have to remind yourself that the software does not automatically make you an expert.

John
CTO in US
Computer & Network Security, 2–10 Employees
Used the Software for: 2+ years
Reviewer Source

Basic tool, needs update

3.0 2 years ago

Pros:

It tries to simplify the assessment process with prompted questionnaire

Cons:

It is not intuitive and customizations are not available enough

Moss
VP of Sales and Marketing in US
Information Technology & Services, 11–50 Employees
Used the Software for: 1+ year
Reviewer Source

Great Tool for 'Basic' Compliance Audits and Management

4.0 2 years ago

Pros:

The product is generally easy to use, even to the point it can be used by sales for discovery process. The reporting is complete and provides good framework for talking points with customers and prospects.

Cons:

There are compliance frameworks not available, (yet).

Ben
TAM in US
Information Technology & Services, 11–50 Employees
Used the Software for: 6-12 months
Reviewer Source

Great Product!

5.0 2 years ago

Pros:

I love the work flow. Easy to understand and follow.

Cons:

None. There were no cons or issue to mention

Alora
Chief of Staff in US
Information Technology & Services, 11–50 Employees
Used the Software for: 6-12 months
Reviewer Source

Always excellent customer service, solid and reliable platform

5.0 2 years ago

Comments: I have been very satisfied with our overall usage.

Pros:

The built-in templates make my life so much easier!

Cons:

While I love that they integrate with IT Glue, it seems like there is a bit of a lag at times

David
CEO in US
Computer & Network Security, 2–10 Employees
Used the Software for: Free Trial
Reviewer Source

never implemented, but tried

1.0 2 years ago

Comments: Been trying to get an agreement set for 2 months

Pros:

Looks good on paper, but would need to get an agreement and install an instance to know

Cons:

Would be great to get on an agreement for 2023 to implement product use. Not being able to implement skews my opinion.