DoControl provides organizations with the automated, self-service tools they require for Software as a Service (SaaS) application data access monitoring, orchestration, and remediation.
DoControl provides organizations with the automated, self-service tools they require for Software as a Service (SaaS) application data access monitoring, orchestration, and remediation. The solution uncovers all SaaS users, 3rd party collaborators, assets/metadata, OAuth apps, groups, and activity events. From there, security teams can create granular data access control policies to reduce the risk of data overexposure and exfiltration. We take a unique, customer-focused approach to the challenge of labor-intensive security risk management and data loss prevention (DLP) in SaaS. DoControl has no agents, no inline redirections, and no slow response times as commonly found in Cloud Access Security Broker (CASB) solutions.
Highlights
End-to-end visibility across SaaS apps
Continuous Monitoring and control all identities in real-time
Automated Security Workflows with Granular data access control policies
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
You buy the Core Platform under a contract based on your number of users. Four user bands set your price: up to 500 users, 501 to 2,500 users, 2,501 to 10,000 users, and 10,000 or more users. All four bands include the same core integrations, monitoring, and workflows. The only difference is the user count you fall into. As your user count grows, you move to the band that fits your organization. Pick the band that matches your total users to determine your contract price.
Top-of-mind questions for buyers
What counts as one user for determining which pricing band applies?
Your user count reflects the people across your connected SaaS applications. DoControl builds an inventory of all your SaaS users, assets, and third-party OAuth apps. The total number of users places you into one of the four bands: up to 500, 501 to 2,500, 2,501 to 10,000, or 10,000 or more.
If our user count grows past a band limit, does the price change for all users or only the additional ones?
Pricing is banded, not incremental. Your entire user count sets which single band applies, and the contract price reflects that band. Crossing a boundary moves you to the next band for all users, not just the new ones. Confirm transition timing with the vendor.
Do all four bands include the same features, or do larger bands add capabilities?
All four bands include the same Core Platform: core integrations, monitoring, and workflows. This covers data inventory, data loss prevention, threat detection, remediation workflows, and shadow app governance. The only difference between bands is the user count you fall into, which sets your contract price.
Request a private offer to receive a custom quote.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
DoControl is committed to ensuring that its Customers, Prospects, and Partners receive best-in-class support. We do this through constant product improvements, hiring top notch talent, and building scalable processes to enable organizations to best protect their SaaS infrastructure.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Discovers all SaaS users, third-party collaborators, assets, metadata, OAuth apps, groups, and activity events across SaaS applications
Real-time Identity Monitoring
Provides continuous monitoring and control of all identities in real-time across SaaS environments
Granular Access Control Policies
Enables creation of granular data access control policies to reduce data overexposure and exfiltration risks
Automated Security Workflows
Implements automated security workflows for data access orchestration and remediation without agents or inline redirections
Agent-less Architecture
Operates without agents, inline redirections, or performance degradation typical of Cloud Access Security Broker solutions
Identity Threat Detection
Active threat detection and neutralization for SaaS identities with spearphishing blocking and incident response capabilities
Third-Party Integration Risk Management
Discovery and governance of third-party integrations across SaaS applications with risk assessment and mitigation
Data Movement Governance
Monitoring and control of data movement between SaaS applications with visibility into data flows
Application Posture Management
Automated compliance enforcement, privilege reduction, and configuration drift prevention across SaaS platforms
Unified SaaS Security Platform
Integrated platform combining identity security, data governance, and application posture management in a single modular solution
Zero Trust Architecture
Cloud-native zero trust platform that applies zero trust principles to eliminate attack surface and prevent lateral movement across users, applications, and infrastructure.
AI-Powered Threat Detection
AI-powered cyberthreat and data loss prevention services that detect and prevent advanced threats, accidental exposure, theft, and ransomware attacks.
Next-Generation Network Access
Next-generation zero trust network access (ZTNA) platform enabling seamless and secure connectivity to private applications, services, and operational technology devices.
Data Loss Prevention
Data protection capabilities preventing data loss from users, SaaS applications, and public cloud infrastructure through comprehensive loss prevention policies.
End-to-End Digital Experience Monitoring
End-user perspective monitoring and visibility across device, ISP, cloud proxy, and application layers to optimize performance and identify application, network, and device issues.
If you live in Google Workspace and Slack, seriously consider
Reviewed on Aug 14, 2026
Review provided by G2
What do you like best about the product?
Our entire company runs on Google Workspace and Slack, and DoControl supports both as if it were built specifically for them. It delivers DLP with real context. The old approach to DLP is basically scanning for credit card and Social Security numbers, then getting buried in false positives. DoControl adds the missing layers: who the person is, what team they’re on, whether they’re about to leave, and who the recipient is. As a result, our alert volume dropped, and the alerts that still come through are actually worth reading.
The Slack bot that prompts employees to explain a share or undo it is the feature my team mentions most. At this point, about half of our incidents get resolved without even needing a ticket.
What do you dislike about the product?
Coverage beyond the core apps feels thinner. For example, our Salesforce instance doesn’t get the same depth of coverage that our Drive environment does. I’d also like to see more out-of-the-box compliance frameworks mapped to the misconfiguration checks, although to be fair, they do keep adding more over time.
What problems is the product solving and how is that benefiting you?
We’re an analytics company that holds customer data both in our own environment and across our SaaS stack. DoControl gave us DLP that the business doesn’t hate, because legitimate work isn’t getting blocked. As a result, security stopped being the “department of no.”
Ronda F.
Visibility we could not get from our CASB
Reviewed on Aug 14, 2026
Review provided by G2
What do you like best about the product?
We already had a CASB, and it still couldn’t tell us who inside the company had shared what with whom in Google Drive and Slack. DoControl could—within hours of connecting. Seeing your real exposure number is uncomfortable at first, but then you get to work.
What I like most is the business context. An alert about a file shared with an external domain means one thing when it’s our CFO sending financials to our auditors, and something else entirely when a departing engineer sends a design doc to a personal account. DoControl can tell those situations apart because it reads our IdP and HRIS. Our CASB couldn’t.
What do you dislike about the product?
It is expensive for what started as a single-use-case purchase for us. Reporting is the weaker part. Executives want a monthly one-pager and I still end up exporting and massaging data myself. The pre-built dashboards are fine for operators, less so for a board deck.
What problems is the product solving and how is that benefiting you?
Insider risk and external sharing hygiene across Google Workspace and Slack for a consumer electronics company with a lot of contract manufacturers. We caught two genuine pre-departure data grabs in the first year. That paid for it.
Evan L.
A K-12 IT director's honest take after one school year
Reviewed on Aug 13, 2026
Review provided by G2
What do you like best about the product?
The free risk assessment alone was worth the call. It showed us 600,000+ assets shared publicly and student health records sitting in folders any staff member could open. Students and faculty share one Google tenant here, and DoControl let us build what amounts to an ethical wall between them without breaking class projects. The Slack-style notifications that go to the teacher who overshared, instead of to me, changed everything. Teachers fix their own files now. I stopped being the bad guy.
What do you dislike about the product?
Some of the terminology assumes a security background that school IT staff don't have. My team learned it fine, but expect a few training sessions before your generalists are comfortable. I also wish the education pricing were more clearly separated from enterprise pricing.
What problems is the product solving and how is that benefiting you?
FERPA exposure, substitute teachers and contractors retaining access after they leave, and students wandering into faculty content. We remediated over a million exposed assets in the first semester and automated offboarding for temp staff. Our last audit took days instead of weeks because the evidence was already there.
Melanie H.
Cleaned up four years of Google Drive oversharing in a quarter
Reviewed on Aug 12, 2026
Review provided by G2
What do you like best about the product?
We had north of 40,000 files shared externally or with "anyone with the link" after years of growth and no realistic way to fix it by hand. DoControl inventoried everything in the first day.. let me filter by domain, by department, by sensitivity label, and then remove access in bulk. What would have been a six-month intern project took about three weeks of clicking. The scheduled workflows keep it from regressing, which matters more than the initial cleanup.
What do you dislike about the product?
Pricing is driven by data usage, also the workflow builder has a learning curve once you go past the pre-built playbooks. Conditional logic with HRIS attributes took our engineer a week to get right. Not a complaint exactly, but plan for it.
What problems is the product solving and how is that benefiting you?
Data exposure in Google Workspace at a company that doubled headcount twice in two years. We cut public and external asset exposure by roughly 70%, and the workflows now handle the routine stuff (external shares older than 90 days, shares to personal Gmail accounts) without anyone on my team touching them. I got two analysts back to actual investigations.
Information Technology and Services
Excellent SaaS Security Platform.
Reviewed on Jan 14, 2026
Review provided by G2
What do you like best about the product?
It provides clear visibility into SaaS data and continuous Monitoring.
What do you dislike about the product?
Needs a little more improvement in onboarding for to SaaS security learning.
What problems is the product solving and how is that benefiting you?
It is helping in identifying the risk and manage saas data exposure.