ControlCase Data Discovery logo

ControlCase Data Discovery

by ControlCase · Since 2004
No reviews yet
ActiveAvailable globallyCloud
Quick facts
VendorControlCase
Year launched2004
StatusActive
Location3975 FAIR RIDGE DR STE T25S-D FAIRFAX, VA 22033
Countries servedGlobal
Languages4
Integrations1+
Free tierN/A
Free trialN/A
Contact salesYES

About ControlCase Data Discovery

ControlCase Data Discovery is a data discovery software from ControlCase that helps identify and analyze sensitive information. It combines card data discovery, comprehensive reporting, and regulatory compliance support so organizations can manage sensitive data effectively. This tool enables organizations to locate confidential, proprietary, and personally identifiable information across their systems. Using this software, businesses can ensure they meet regulatory requirements while safeguarding sensitive data. Key capabilities: card data discovery comprehensive reporting regulatory compliance support sensitive data identification information risk assessment Best for: businesses that need to identify and manage sensitive information for compliance and security purposes.

ControlCase Data Discovery (CDD) stands out as a specialized solution for organizations that need to proactively manage and secure sensitive information, particularly in environments with strict compliance requirements like PCI DSS, HIPAA, and ISO 27002. Rather than functioning as a typical plug-and-play data protection tool, CDD is both a service and a scanner built around ControlCase’s broader managed compliance ecosystem. Its primary strength lies in its ability to comprehensively locate unencrypted and exposed sensitive data—such as PII, financial records, proprietary files, and especially credit card data including PAN, track data, PINs, and CVVs—across an enterprise's entire IT landscape. From cloud-based systems to databases, shared drives, removable media, and even OCR-based image scanning, CDD’s reach is wide and adaptable. The scanner’s design emphasizes simplicity and scalability. It is agentless, meaning organizations don't need to install intrusive software on every machine to run effective scans, which greatly simplifies deployment and minimizes system overhead. This flexibility extends to platform compatibility as well, with support for Windows, Mac, and Unix variants such as Linux, FreeBSD, Solaris, HP-UX, and IBM AIX.

Pros & Cons

Pros
  • Comprehensive Coverage: Scans across file systems, databases, shared drives, and removable media for unencrypted sensitive data.
  • Flexible Deployment: Can be run remotely or locally, as a one-time or recurring service.
  • Scan-Over-Scan Trend Analysis: Tracks data protection improvements over time.
  • Regulatory Alignment: Supports compliance with PCI DSS, HIPAA, ISO 27002, and more.
  • File-Type Agnostic: Not limited by file format—can detect data in PDFs, databases, and standard file types.
  • Centralized Management: Uses the CC-GRC portal for real-time monitoring and engagement tracking.
  • Customizable Service: Tailored to client-specific environments and risk profiles.
Cons
  • No Public Pricing: Requires direct contact for quotes, which may delay decision-making.
  • Manual Remediation: While discovery is automated, remediation still requires client-side action.
  • Initial Setup Requirements: May need administrative access and configuration for full environment scanning.
  • Limited UI Preview: Public-facing materials don’t showcase the scanner’s interface or user experience.

Features

Key features

Comprehensive Sensitive Data Identification

Systematically finds unencrypted confidential, proprietary, PII, financial, and credit card data (track, PIN, CVV) across the entire network.

Broad File Type & Environment Coverage

Scans any type of file across file systems, shared drives, databases (including commercial, open-source, and specific ones like IBM DB2, Informix, Exchange, SharePoint), and removable media from a central location.

Scan-over-Scan Trend Analysis

A key differentiator that demonstrates the effectiveness of an organization's data management and protection initiatives over time.

Compliance-Driven Remediation & Mitigation

Identifies data issues, assesses their impact, and provides recommendations for remediation (implementing safeguards or removing data) to ensure compliance with standards like PCI DSS, HIPAA, and ISO 27002.

Agentless Scanning

The CDD scanner is agentless, meaning it doesn't require agents or plugins on scanned machines, simplifying deployment and reducing resource usage.

Managed Compliance Services Integration

Can be provided as a standalone service or bundled with other ControlCase Managed Compliance Services, offering flexible engagement models.

Additional features

Systematic Identification of Sensitive Information

Methodically finds confidential, proprietary, and PII.

Analysis of Sensitive Information

Processes discovered data to understand its nature.

Credit Card Data Discovery

Specifically identifies track, PIN, and CVV data.

Finds Data in File Systems

Locates sensitive data within file directories.

Finds Data in Shared Drives

Discovers sensitive data on network shared storage.

Finds Data in Databases

Locates sensitive data within various database types (MsSql, MySql, Oracle, Postgre SQL, IBM DB2, Informix).

Finds Data in Removable Media

Scans external storage devices.

Finds Unencrypted Data

Specifically targets data that is not protected by encryption.

Network-Wide Scanning from One Central Location

Scans the entire network from a single point of control.

Not Constrained by File Types

Can search for sensitive data regardless of the file format.

Includes PDF and Standard File Formats

Explicitly supports common document types.

Includes Office 365 Files

Scans data stored within Microsoft Office 365 environments.

Includes ZIP Files

Can scan compressed archives.

Pinpoints PAN, Track Data, PIN, CVV

Precisely locates specific credit card data elements.

Supports Microsoft Exchange Servers Scanning

Scans email servers for sensitive data.

Supports SharePoint Scanning via Web Interface

Allows scanning of SharePoint environments.

Supports Scanning of Images (OCR)

Can identify sensitive data within images using Optical Character Recognition.

Supports IBM Notes

Scans IBM Notes environments.

Supports Custom BIN Range Scanning

Allows specifying custom ranges for Bank Identification Numbers in scans.

Identifies Associated IT Assets

Links discovered data to the IT assets where it resides.

Assessment of Control Effectiveness

Helps clients confirm if appropriate controls are in place for identified data.

Remediation Recommendations

Provides suggestions for implementing additional safeguards or removing unprotected data.

Impact Assessment

Evaluates the potential impact of identified data issues.

Mitigation Recommendations

Offers strategies to reduce the risk associated with data issues.

Technical Solution Recommendations

Suggests specific technical fixes for data issues.

Reduces Level of Effort for Data Management

Simplifies comprehensive data management programs for clients.

Objective Assessment of Internal Data Management Processes

Helps clients evaluate their data processes in operations, engineering, and marketing.

Supports Data Retention & Disposal Practices

Aids in fine-tuning policies for how long data is kept and how it's disposed of.

Compliance with Industry Regulatory Requirements

Specifically helps meet PCI DSS, ISO 27002, and HIPAA requirements.

Enabled by CC-GRC Portal

Clients can monitor engagement progress through the ControlCase GRC portal.

Flexible Service Frequency

Can be performed as a one-time project, or on a scheduled, or as-needed basis.

Remote or Local Service Execution

The service can be run remotely by ControlCase or locally by the client.

Client-Run Scanner Option

Clients can run the scanner themselves and provide raw data for analysis by ControlCase.

Fast Scanning

The CDD scanner is described as fast.

Minimal Resource Usage

Requires minimal system resources.

Advanced False-Positive Management

Aims to significantly reduce false positives for accuracy.

Remediation Dashboard

Shows the exact location of sensitive data to simplify mitigation.

Schedule Scans

Allows scheduling weekly, monthly, quarterly, or continuous scans.

Locates Unencrypted Data in Active Directory Domains

Scans Active Directory for sensitive information.

OS Support

Supports Windows, MAC, and Unix variants (Linux, FreeBSD, Solaris, HP-UX, IBM AIX).

Supports Exclusion/Inclusion of Test Card Data

Allows filtering out test data from scans.

Data Activity Monitoring

Monitors data activity.

Data Classification

Classifies data based on sensitivity.

Encryption, Blocking, Masking, Quarantining

Offers methods for data protection and remediation.

Export Capabilities

Allows exporting of scan results.

PHI (Protected Health Information) Detection

Specifically identifies health-related sensitive data.

PII (Personal Identifiable Information) Detection

Specifically identifies personally identifiable information.

Search for Unencrypted Data Across Local and Network Drives

Scans both local machines and network shares.

Pinpoint Sensitive Data in File Shares, Servers, and Emails

Locates data in key storage and communication points.

24/7 Support

Provides round-the-clock customer assistance.

Pricing

Free trial
Free version
Request a quote
Promo Offer

Countries & Languages

Global
Countries served
4
Interface languages
17
Billing currencies

Interface languages

EnglishSpanishFrenchGerman

Billing currencies

🇺🇸USD🇪🇺EUR🇬🇧GBP🇯🇵JPY🇦🇺AUD🇨🇦CAD🇳🇿NZD🇨🇭CHF🇸🇪SEK🇳🇴NOK🇩🇰DKK🇵🇱PLN🇨🇿CZK🇭🇺HUF🇷🇺RUB🇹🇷TRY🇮🇳INR

No reviews yet

Be the first to drop a review

Alternatives to ControlCase Data Discovery

TraceDock logo

TraceDock

TraceDock is a Customer Data Platform from CM.com that helps users understand the customers as…

D

DroneBase

DroneBase is a drone data software platform from DroneBase that provides aerial imaging solutions for…

B

BotCon

BotCon is an event platform from Hasbro designed for attendees of the BotCon convention. It…

W

WeighMAST

WeighMAST is a weighing management software from Agrimaster designed for agricultural businesses. It provides accurate…

C

Community Sift

Community Sift is a moderation software from Two Hat that helps filter out negative content…

GhostBed logo

GhostBed

[API Error: HTTPSConnectionPool(host='api.openai.com', port=44]

Spot something wrong or outdated?

Suggest a correction — a reviewer verifies every change.

Often compared with ControlCase Data Discovery

Compare any two tools →
TraceDock logo
TraceDock
Data Discovery
0.0
D
DroneBase
Data Discovery
0.0
B
BotCon
Data Discovery
0.0
W
WeighMAST
Data Discovery
0.0