Overview
BigID enables security, compliance, privacy, & governance for all data, everywhere: including the multicloud, SaaS, Iaas, PaaS, on-prem environments, and more - across structured, unstructured, and semi structured data.
As the market-leading DSPM (data security posture management), DPM (data privacy management) and DSP (data security) platform, BigID helps customers of all sizes know their data, control their data, and take action on the data that matters most.
Data Discovery: Automatically discover & classify all data and metadata for structured and unstructured, across the cloud and on-prem.
DSPM: Data Security Posture Management done differently - from uncovering dark data to surfacing critical risk to remediation.
Zero Trust: Reduce insider risk and manage insider threats with access governance controls and get to a least privileged model.
AI Security: Get AI ready and accelerate data security, privacy, compliance, and hygiene for AI to accelerate adoption and minimize risk.
Compliance: Reduce risk and align with data regulations and security frameworks, avoid audits, and enable compliance.
Data Privacy Management: Data Privacy Management with data-driven automation for regulatory compliance and privacy by design.
Data & AI Governance: Automation for data& AI governance - tag, classify, and manage large data sets; improve data quality, automate data retention, and enrich your data catalogs with metadata exchange and context.
BigID is enterprise-ready and built to scale: enabling a data-centric approach to comprehensive cloud data security & DSPM, accelerating compliance, automating privacy, and streamlining governance, and enabling innovation through secure Generative AI adoption.
To learn more, get a 1:1 demo or visit bigid.com.
For customized private offer pricing, contact CSPMarketplaceorders@bigid.com
Highlights
- Improve Security Posture: Lock down high risk data, reduce risk, and automate controls and enforcement around sensitive data
- Drive GenAI Adoption: Manage what data is shared by whom; audit and enforce policies on data usage for AI
- Reduce Insider Risk: Map, monitor, and mitigate internal and external access based on data sensitivity and role
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Security credentials achieved
(2)


Buyer guide

Financing for AWS Marketplace purchases
Pricing
Dimension | Description | Cost/12 months |
|---|---|---|
Discovery Foundation | Discovery foundation L1 - Please contact BigID for custom pricing. | $175,000.00 |
Vendor refund policy
All fees are non-cancellable and non-refundable except as required by law.
Custom pricing options
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Resources
Vendor resources
Support
Vendor support
BigID provides support for BigID software including basic installation and configuration assistance, as well as the troubleshooting of issues encountered with installation, configuration, and operation.. Clients also receive access to BigID's Knowledge Base for product issues and resolution which supplements the official product documentation as well notification of product updates as they become available. For Assistance with sales or to request a custom quote, please email CSPMarketplaceOrders@BigID.com . Existing BigID customers can raise request with BigID Customer Support via the BigID Client Support Portal at https://support.bigid.com or by emailing support@bigid.com .
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.


FedRAMP
GDPR
HIPAA
ISO/IEC 27001
PCI DSS
SOC 2 Type 2
Standard contract
Customer reviews
Automated data requests have saved weeks of manual effort and deliver accurate privacy insights
What is our primary use case?
BigID automated the process of Data Subject Requests (DSR) and data discovery of databases containing personally identifiable information (PII).
I worked on a project using BigID for automating DSR and data discovery for PII. The project was divided into several phases. The first phase involved business contact and socialization, where we reached out to different stakeholders and learned about their databases and which tables contained the most PII. The next phase was the technical gathering phase where we understood the IP address, tables, port numbers, and whether the IP was dynamic or static. The subsequent phase was the build and connectivity phase where we created data sources from those databases.
The most valuable part of BigID was the scan and result phase, which provided nearly accurate results of the databases containing PII numbers and the metadata of the PII present in the database. It also described what the tables contained. We had the asset owners verify the results, and the next phase was the test phase where we collected primary data sample test cases such as email IDs or employee IDs to conduct test DSRs on the process. When scanning results were correct and accurate, we closed them out.
BigID should focus more on the unstructured data part because many organizations have significant amounts of unexplored unstructured data containing large quantities of PII that they are not even aware of. If BigID could scan unstructured data in a seamless way as they do with structured data, it would be very useful for companies to discover the PII data hiding within unstructured data.
What is most valuable?
The best features BigID offers are data discovery and DSR, along with the policies they provide, including custom policies that we can create to ensure scans and results are accurate.
The custom policies were based on regulations such as GDPR, CCPA, CPRA, and India's LVDPA. Some policies we created were custom due to business requirements and information that was considered PII based on the company's specific context. In those cases, we created special custom policies so that during scans they capture information as PII. BigID also gave us the advantage to create custom policies for the scan process.
What needs improvement?
The challenges with BigID were not primarily from BigID itself but rather from the database side, where scans sometimes failed due to issues originating from the database rather than BigID. BigID's user interface was problematic as it was not very user-friendly, though I believe it improved over time. Apart from that, BigID deserves recognition for the data discovery part, which has been wonderful and quite accurate, along with the confidence level process that allows us to fine-tune results for better accuracy from the database.
The user interfaces can be improved, and not only for DSR or BigID scans but also for other aspects of data privacy. BigID can also improve its focus on unstructured data and make certain enhancements in that area.
For how long have I used the solution?
I have been using BigID for around two and a half years.
How was the initial setup?
The initial setup and configuration of BigID for my client was seamless because folks from BigID helped us set up the configurations.
What other advice do I have?
I would prefer to work on more features that BigID offers, which I have not yet explored.
Although I was serving the client rather than my own organization, BigID has made scans faster and more efficient, and the DSR results are much more accurate. We can obtain results in a very short amount of time. The manual DSR process would take days and maybe weeks, but with DSR automation, results come in minutes or hours. This made a significant improvement and saved considerable time for my client. I have mentioned everything I am aware of regarding areas where improvements are needed. There may be other cases, but I am not aware of them.
Since the data sources were mostly on-premise and structured, the integration of BigID with other tools or platforms my client uses is smooth.
I would rate this product a nine out of ten.
Data discovery has transformed compliance workflows and automation now speeds up requests and remediation
What is our primary use case?
My main use case for BigID includes data discovery and classification, DSAR automation, and data remediation.
I use BigID for data discovery and classification in my work by identifying where personal information lies within organizations, which often don't know where their personal information is stored. Organizations may be using or storing client data or any data of their users. When we do data discovery and classification, we get an actual picture of where there's personal data, and sometimes we find places where personal data shouldn't be, raising compliance issues. Regulatory compliance can be costly for organizations, and doing data discovery and classification helps us identify where most of this personal data is located.
In addition to data discovery and classification, I can also use BigID for data DSAR automation. Whenever somebody requests their data to be deleted, it's a quicker process than manually retrieving all the information about where their personal data lies, allowing DSAR automation requests to be fulfilled within 72 hours or so.
What is most valuable?
The best feature that BigID offers is data discovery and classification, which is the most powerful engine. It allows connecting to many different data sources, ranging from cloud to on-premises to structured to unstructured data. If there is no connector available, you can build your own classifiers as well.
Regarding the custom classifier option, you can build custom classifiers using regular expressions, and I have done that if you know how to create regular expressions. Custom connectors are something you create to connect to a database where the connector is not available.
BigID has positively impacted my organization as it's a very powerful tool, especially with the increasing regulatory compliances for different countries such as GDPR, CCPA, and India's recent DPDPA act. Having these tools in place greatly helps organizations avoid any penal charges for not being compliant with the regulatory compliances.
For example, regarding compliance or reduced risks for my clients, the DSAR process I was talking about allows organizations to respond quickly to user data deletion requests under GDPR law, which traditionally has a 30-day or 60-day timeline. In larger organizations, when the number of requests is high, it becomes tedious. However, using DSAR automation with BigID, it's almost instantaneous; instead of 30 days, you can respond in just one day to what users have requested.
What needs improvement?
One area where BigID can be improved is the UI, which has a lot of bugs. I believe that if they improve their UI experience, that would greatly help.
In general, sometimes you see bugs, but there's nothing specific that I can point out right now regarding needed improvements.
For how long have I used the solution?
I have been using BigID for almost five years.
What do I think about the stability of the solution?
BigID is indeed stable.
What do I think about the scalability of the solution?
BigID is scalable, allowing you to purchase as many scanners as you want.
How are customer service and support?
The customer support for BigID includes L1, L2, and L3 support, which is quite responsive.
I would rate the customer support a six because you cannot directly reach out to L3 or L2 support if there's a major issue. Their standard procedure requires going through L1 first, which can be time-consuming.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I have used other tools such as OneTrust and Security.ai for other organizations, but I haven't seen organizations switch from one tool to another before using BigID.
What was our ROI?
I have seen a return on investment from using BigID, particularly as it is a regulatory and compliance tool that helps avoid potential penalties for non-compliance. You can save time when it comes to finding where your data lies or automating your DSAR and RoPA automation, among other things. When measuring the amount of penalty that could have been incurred, it was avoided.
What's my experience with pricing, setup cost, and licensing?
My experience with pricing, setup cost, and licensing is limited since, as a consultant, I do not really engage in these discussions. These details are mostly handled by the vendor and the client side, while we focus on the implementation.
Which other solutions did I evaluate?
Before choosing BigID, I did evaluate other options, specifically OneTrust and Security.ai, but based on the use case of data discovery and classification, we determined that BigID was the best option for us.
What other advice do I have?
I don't have anything else to add about the features. I don't have any specific advice that I can think of for others looking into using BigID. My overall rating for this review is eight.
I got kicked off my LTD I had with BidID's acquired company!!
BigID took over that company and decided not to honer the LTDs they had with many customers. My account got deleted, I cannot even login on the new platform. Very bad!
Automatic data classification strengthens data discovery and governance
What is our primary use case?
Data discovery is the strongest use case for BigID .
What is most valuable?
Data classification is highly effective due to its automatic capabilities. One of the best features of BigID is its strength in data discovery and governance.
What needs improvement?
I want them to focus on data mapping, assessment, automation workflow, and privacy incident management. The privacy tools have not been widely used, and they have not invested much in privacy code privacy tools.
For how long have I used the solution?
I have used the solution for five years.
What do I think about the stability of the solution?
I find it really stable.
What do I think about the scalability of the solution?
BigID is scalable, so the size of the environment can be adjusted based on my organization's requirements.
How are customer service and support?
BigID has one of the best technical support teams.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
A lot of customers have moved to OneTrust since they have not given enough time to BigID.
How was the initial setup?
The initial setup is not complex; it is pretty straightforward. Once connected, it becomes easier to connect to other data sources.
What was our ROI?
BigID is really good in terms of getting out the ROIs. It is one of the best tools in the market.
What's my experience with pricing, setup cost, and licensing?
The pricing is competitive in the market, however, I need to ask for the right price.
What other advice do I have?
I would rate BigID at eight out of ten. I would advise users to go with a small proof of concept, connect to their on-prem or cloud instances, and then scale over time.
Predefined classifiers in place support sensitive data scanning effectively
What is our primary use case?
What is most valuable?
What needs improvement?
For how long have I used the solution?
What do I think about the stability of the solution?
How are customer service and support?
How would you rate customer service and support?
Neutral