DoControl provides organizations with the automated, self-service tools they require for Software as a Service (SaaS) application data access monitoring, orchestration, and remediation.
DoControl provides organizations with the automated, self-service tools they require for Software as a Service (SaaS) application data access monitoring, orchestration, and remediation. The solution uncovers all SaaS users, 3rd party collaborators, assets/metadata, OAuth apps, groups, and activity events. From there, security teams can create granular data access control policies to reduce the risk of data overexposure and exfiltration. We take a unique, customer-focused approach to the challenge of labor-intensive security risk management and data loss prevention (DLP) in SaaS. DoControl has no agents, no inline redirections, and no slow response times as commonly found in Cloud Access Security Broker (CASB) solutions.
Highlights
End-to-end visibility across SaaS apps
Continuous Monitoring and control all identities in real-time
Automated Security Workflows with Granular data access control policies
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
You buy the Core Platform under a contract based on your number of users. Four user bands set your price: up to 500 users, 501 to 2,500 users, 2,501 to 10,000 users, and 10,000 or more users. All four bands include the same core integrations, monitoring, and workflows. The only difference is the user count you fall into. As your user count grows, you move to the band that fits your organization. Pick the band that matches your total users to determine your contract price.
Top-of-mind questions for buyers
What counts as one user for determining which pricing band applies?
Your user count reflects the people across your connected SaaS applications. DoControl builds an inventory of all your SaaS users, assets, and third-party OAuth apps. The total number of users places you into one of the four bands: up to 500, 501 to 2,500, 2,501 to 10,000, or 10,000 or more.
If our user count grows past a band limit, does the price change for all users or only the additional ones?
Pricing is banded, not incremental. Your entire user count sets which single band applies, and the contract price reflects that band. Crossing a boundary moves you to the next band for all users, not just the new ones. Confirm transition timing with the vendor.
Do all four bands include the same features, or do larger bands add capabilities?
All four bands include the same Core Platform: core integrations, monitoring, and workflows. This covers data inventory, data loss prevention, threat detection, remediation workflows, and shadow app governance. The only difference between bands is the user count you fall into, which sets your contract price.
Request a private offer to receive a custom quote.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
DoControl is committed to ensuring that its Customers, Prospects, and Partners receive best-in-class support. We do this through constant product improvements, hiring top notch talent, and building scalable processes to enable organizations to best protect their SaaS infrastructure.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Discovers all SaaS users, third-party collaborators, assets, metadata, OAuth apps, groups, and activity events across SaaS applications
Real-time Identity Monitoring
Provides continuous monitoring and control of all identities in real-time across SaaS environments
Granular Access Control Policies
Enables creation of granular data access control policies to reduce data overexposure and exfiltration risks
Automated Security Workflows
Implements automated security workflows for orchestration and remediation of security incidents
Agent-less Architecture
Operates without agents, inline redirections, or performance degradation typical of Cloud Access Security Broker solutions
Identity Threat Detection and Response
Active threat detection to prevent cyberattacks on SaaS identities with capabilities for spearphishing blocking and incident response acceleration
Third-Party Integration Risk Management
Discovery and governance of third-party integrations across SaaS applications with identification of risky or unnecessary connections
Data Movement Governance
Monitoring and control of data movement between SaaS applications with visibility into hidden SaaS usage patterns
Application Posture Management
Automated compliance enforcement, privilege reduction, and configuration drift prevention across SaaS platforms
Multi-Application Support
Integration with leading SaaS platforms including Salesforce, Workday, Office 365, and Google Workspace
Zero Trust Architecture
Cloud-native platform implementing zero trust principles to eliminate attack surface and prevent lateral movement across distributed workforce access.
AI-Powered Threat Detection
Advanced cyberthreat and data loss prevention services utilizing artificial intelligence to identify and halt threats in real-time.
Data Loss Prevention
Protection against data loss from users, SaaS applications, and public cloud infrastructure due to accidental exposure, theft, or ransomware attacks.
Next-Generation Zero Trust Network Access
Industry-specific zero trust network access (ZTNA) platform enabling seamless and secure connectivity to private applications, services, and operational technology devices.
End-to-End Digital Experience Monitoring
Visibility and performance optimization across the complete user journey from device through ISP to cloud proxy to application endpoints.
From about 84,100 exposed files to a number I can say out loud
Reviewed on Sep 22, 2026
Review provided by G2
What do you like best about the product?
Within two days of connecting Microsoft 365, OneDrive, and Teams, DoControl surfaced exposure we’d been guessing about for years. Now the guessing is over.
What do you dislike about the product?
My saved filters sometimes disappear after a UI update.
What problems is the product solving and how is that benefiting you?
Our auditors asked who had access to what. Before DoControl, the honest answer was, “we think we know.” With DoControl, the initial cleanup was finished in two days. Our previous plan was basically a summer intern and a prayer.
Chris S.
Our Google Workspace exposure dropped 47%
Reviewed on Sep 22, 2026
Review provided by G2
What do you like best about the product?
Within a single morning of connecting Google Workspace and Slack, DoControl surfaced exposure we’d been guessing at for years. The guessing is over. It was honestly a real wow moment: you connect Google Workspace, and about an hour later you’re looking at every overshared file in the company, with the ability to sort by owner, department, and sensitivity.
What do you dislike about the product?
UI updates have now wiped out my saved filters twice.
What problems is the product solving and how is that benefiting you?
Our auditors asked who had access to what, and before DoControl the honest answer was, “we think we know.” Since then, exposure is down 47%, and it stays down because the workflows help us hold the line. We can answer access questions in minutes now, instead of chasing details across teams. Board reporting has gotten easier, too, because the information is clearer and quicker to pull together.
George W.
DoControl Exposed Our Microsoft 365, Salesforce, and Teams Data Risks Fast
Reviewed on Sep 22, 2026
Review provided by G2
What do you like best about the product?
We’re roughly 850 employees in consumer electronics, and most of our data lives in Microsoft 365, Salesforce, and Teams. Within a weekend of connecting Microsoft 365, Salesforce, and Teams, DoControl surfaced exposure we’d been guessing about for years. The guessing is over. The numbers were a lot worse than we assumed. The exposure query builder is the standout: I can ask, “Show me everything Customer Success shared externally last quarter,” and get an answer right away not a ticket.
What do you dislike about the product?
In our case, it won’t manage SaaS licenses or handle IT lifecycle work. For us, that falls into a different tool category, but people keep asking about it.
What problems is the product solving and how is that benefiting you?
Years of growth left us with a sharing mess that nobody really owned: roughly 2,130 external shares, no clear process, and zero visibility. Now we can answer access questions in minutes, and board reporting is easier as well. The initial cleanup was finished over a single weekend. Before this, our “plan” was basically a summer intern and a prayer.
Computer & Network Security
Exposure cleanup that gets to zero, month nine
Reviewed on Sep 21, 2026
Review provided by G2
What do you like best about the product?
The ability to correct history, instead of just watching it. We cleaned up about 24,300 excess shared assets in Google Workspace with a few clicks, and then set up scheduled workflows so the problem doesn't accumulate again. Every action is logged with a timestamp and the actor who performed it: our auditor really liked this part. What I appreciate most is that the remediation really gets to the 'done'. Other tools highlight the risk and then leave you with a queue to manage. With DoControl, we managed to clear a backlog of about 24,300 files in just one morning.
What do you dislike about the product?
For us, bulk actions make me cautious every time I use them. An undo option for bulk remediation would make me feel more at ease. Also, in practice, the mobile experience is read-only: it's fine for triage, but not for administrative tasks.
What problems is the product solving and how is that benefiting you?
On our part, we knew the exposure existed, but manual remediation couldn't keep up with the pace of new shares every week. In the first quarter, exposure decreased by 83%, and the audit log clearly shows how this result was achieved.
Mitch D.
Renewed after exposure cleanup paid for the year
Reviewed on Sep 21, 2026
Review provided by G2
What do you like best about the product?
Within three days of connecting Google Workspace, Dropbox, and Slack, DoControl surfaced exposures we’d been guessing about for years. Now the guessing is over.
What do you dislike about the product?
Nothing major to report. For us, the only possible issue was the price, but we renewed anyway without any fuss.
What problems is the product solving and how is that benefiting you?
Our auditors asked who had access to what. Before DoControl, the honest answer was, “we think we know.” With DoControl, the initial cleanup was finished in three days. Our previous plan was basically a summer intern and a prayer.