HomeCustomersWest Monroe

West Monroe Yields Zero-Condition Audits and Cost Saving With Drata and A-LIGN

West Monroe 16:9

Audit preparation cut from three months to just three weeks with Drata and A-LIGN

ISO 27001
Business Services
Enterprise

Before Drata: Disorganized Documentation and Compliance

Before implementing Drata, West Monroe's compliance program faced several challenges. Their SOC 2 audit in 2022 highlighted numerous gaps and inefficiencies. The manual process, with its scattered and outdated documentation, resulted in a 25-page gap paper, putting their report at risk.

The absence of a centralized repository for documentation compounded these issues, making audit preparations arduous and error-prone. The challenge was clear: West Monroe needed a streamlined solution to serve as a reliable source of truth for all their documentation.

SOC 2

Automate and Accelerate SOC 2 Compliance

Built for powerful automation and designed by auditors and security experts for ease of use, Drata accelerates your SOC 2 compliance journey.

Learn More

The Solution: Integrating Drata and Partnering with A-LIGN

To address these issues, West Monroe partnered with Drata, renowned for its simplicity and automated evidence collection capabilities, and A-LIGN, a leading provider of high-quality, efficient cybersecurity compliance programs. Drata's disciplined approach to documentation management established centralized repositories, facilitating easy retrieval and review. The platform's seamless integration with West Monroe's Microsoft-based systems, including HR systems and the Azure environment, proved invaluable.

A-LIGN, a relationship inherited through an acquisition, was a crucial part of the compliance journey. Despite the inheritance, the choice to stay with A-LIGN was deliberate. "Inheritance didn't mean that we had to either stay with them or part ways with them, but due to the people and the technology we were working with, we decided that A-LIGN is the right auditing partner for us," Shan Moosa explained.

"A-LIGN and Drata together form a perfect relationship. You have strategic audit partners in A-LIGN, and you have an automation juggernaut in Drata. When they both work together, you're looking at nothing but positive results."

Shan Moosa, Sr. Manager, GRC & Cybersecurity

Get a Demo

Implementing Automation for Enhanced Efficiency

West Monroe went from tedious, manual processes to saving significant time with Drata’s robust automation capabilities. By automating evidence collection and minimizing manual team efforts, Drata significantly reduced the time and effort required for compliance tasks. They were also able to conduct security impact assessments within Drata, reducing costs and enhancing operation efficiency.

A-LIGN's expertise and high-quality audit service, combined with Drata's innovative technology, created a comprehensive solution that addressed all aspects of West Monroe's compliance needs.

The Results: 70% Reduction In Time Spent On Audit Prep

The partnership between Drata, A-LIGN, and West Monroe yielded impressive results. In the most recent audit, West Monroe achieved a zero-condition report, a stark contrast to the previous year’s 25-page gap paper, resulting in their first unconditional audit in the company’s history. The audit preparation time was dramatically reduced from a three-month effort to an estimated three weeks, focusing on review and minor updates rather than extensive document creation.

By using Drata for security impact assessments, West Monroe saved substantial costs, eliminating the need for expensive third-party vendors. Drata’s platform enabled West Monroe to efficiently manage compliance documentation for their international operations, including offices in Costa Rica, London, Mexico, and prospective locations in Southeast Asia. Due to the shared controls across frameworks in Drata, completing the work for SOC 2 brought West Monroe to an 82% readiness level for GDPR without any additional work.

"The very top benefit that we see working with Drata is their product skillset in the automation space. It has a very robust automation and innovation technology that's built into the product, and that, to us, is very attractive."

Shan Moosa, Sr. Manager, GRC & Cybersecurity

Get a Demo

With Drata and A-LIGN in place, West Monroe successfully navigated their SOC 2 Type 2 audit and set their sights on future compliance goals, including GDPR and CCPA frameworks. The firm anticipates further advancements in their compliance journey, focusing on swift adaptation to regulatory changes and leveraging AI technologies.

Excellent Based on 1000+ Reviews

Automate Your Journey

Schedule a Demo

Explore Other Stories

Learn about how other customers are harnessing the power of compliance automation with Drata.

Asset Lemonade v2

CUSTOMER STORY

How Lemonade Saved 80% of Time Using Drata’s Continuous Compliance Automation

Asset Micruity v2

CUSTOMER STORY

How SOC 2 Establishes Trust and Competitive Advantage in the InsurTech Market

Asset Policydock v2

CUSTOMER STORY

Drata Saves PolicyDock 6 Months and Empowers Their Lean Team to Focus on the Core of the Business

Asset - Calendly 16:9

CUSTOMER STORY

How Calendly Reduced Hours Spent on Audit Prep by 90% with Drata’s Compliance Automation