At our company, we use the daitaGRC tool for our SOX compliance. The great feature we like is the automated audit/PBC requests for both our finance and IT testing. Each of the requestees dont need an daitaGRC license, so its much easier to maintain while keeping the costs down. The external auditors who access our testing don't require a paid license either, which again is great! Very user friendly compared to the more expensive GRC companies out there, which makes it a no brainer for us to love this produce. daitasoft took care of most of the implementation for us, which was quick and not a drag on our IA team. Review collected by and hosted on G2.com.
DaitaGRC doesnt have other frameworks for NIST or PCI, but most other GRC tools dont either. Luckily daitasoft has stated that other compliance frameworks are coming in summer 2025, so we're looking forward to seeing that as well. Review collected by and hosted on G2.com.