ControlCase Data Discovery logo

ControlCase Data Discovery

by ControlCase · Since 2004
No reviews yet
ActiveAvailable globallyCloud
Quick facts
VendorControlCase
Year launched2004
StatusActive
Location3975 FAIR RIDGE DR STE T25S-D FAIRFAX, VA 22033
Countries servedGlobal
Languages4
Integrations1+
Free tier
Free trial
Contact salesYES

About ControlCase Data Discovery

ControlCase Data Discovery is a data discovery software from ControlCase that helps identify and analyze sensitive information. It combines card data discovery, comprehensive reporting, and regulatory compliance support so organizations can manage sensitive data effectively. This tool enables organizations to locate confidential, proprietary, and personally identifiable information across their systems. Using this software, businesses can ensure they meet regulatory requirements while safeguarding sensitive data. Key capabilities: card data discovery comprehensive reporting regulatory compliance support sensitive data identification information risk assessment Best for: businesses that need to identify and manage sensitive information for compliance and security purposes.

ControlCase Data Discovery (CDD) stands out as a specialized solution for organizations that need to proactively manage and secure sensitive information, particularly in environments with strict compliance requirements like PCI DSS, HIPAA, and ISO 27002. Rather than functioning as a typical plug-and-play data protection tool, CDD is both a service and a scanner built around ControlCase’s broader managed compliance ecosystem. Its primary strength lies in its ability to comprehensively locate unencrypted and exposed sensitive data—such as PII, financial records, proprietary files, and especially credit card data including PAN, track data, PINs, and CVVs—across an enterprise's entire IT landscape. From cloud-based systems to databases, shared drives, removable media, and even OCR-based image scanning, CDD’s reach is wide and adaptable. The scanner’s design emphasizes simplicity and scalability. It is agentless, meaning organizations don't need to install intrusive software on every machine to run effective scans, which greatly simplifies deployment and minimizes system overhead. This flexibility extends to platform compatibility as well, with support for Windows, Mac, and Unix variants such as Linux, FreeBSD, Solaris, HP-UX, and IBM AIX.

Pros & Cons

What users like
  • +Comprehensive Coverage: Scans across file systems, databases, shared drives, and removable media for unencrypted sensitive data.
  • +Flexible Deployment: Can be run remotely or locally, as a one-time or recurring service.
  • +Scan-Over-Scan Trend Analysis: Tracks data protection improvements over time.
  • +Regulatory Alignment: Supports compliance with PCI DSS, HIPAA, ISO 27002, and more.
  • +File-Type Agnostic: Not limited by file format—can detect data in PDFs, databases, and standard file types.
  • +Centralized Management: Uses the CC-GRC portal for real-time monitoring and engagement tracking.
  • +Customizable Service: Tailored to client-specific environments and risk profiles.
What users flag
  • No Public Pricing: Requires direct contact for quotes, which may delay decision-making.
  • Manual Remediation: While discovery is automated, remediation still requires client-side action.
  • Initial Setup Requirements: May need administrative access and configuration for full environment scanning.
  • Limited UI Preview: Public-facing materials don’t showcase the scanner’s interface or user experience.

Features

Key features

Comprehensive Sensitive Data Identification
Systematically finds unencrypted confidential, proprietary, PII, financial, and credit card data (track, PIN, CVV) across the entire network.
Broad File Type & Environment Coverage
Scans any type of file across file systems, shared drives, databases (including commercial, open-source, and specific ones like IBM DB2, Informix, Exchange, SharePoint), and removable media from a central location.
Scan-over-Scan Trend Analysis
A key differentiator that demonstrates the effectiveness of an organization's data management and protection initiatives over time.
Compliance-Driven Remediation & Mitigation
Identifies data issues, assesses their impact, and provides recommendations for remediation (implementing safeguards or removing data) to ensure compliance with standards like PCI DSS, HIPAA, and ISO 27002.
Agentless Scanning
The CDD scanner is agentless, meaning it doesn't require agents or plugins on scanned machines, simplifying deployment and reducing resource usage.
Managed Compliance Services Integration
Can be provided as a standalone service or bundled with other ControlCase Managed Compliance Services, offering flexible engagement models.

Additional features

Systematic Identification of Sensitive Information
Methodically finds confidential, proprietary, and PII.
Analysis of Sensitive Information
Processes discovered data to understand its nature.
Credit Card Data Discovery
Specifically identifies track, PIN, and CVV data.
Finds Data in File Systems
Locates sensitive data within file directories.
Finds Data in Shared Drives
Discovers sensitive data on network shared storage.
Finds Data in Databases
Locates sensitive data within various database types (MsSql, MySql, Oracle, Postgre SQL, IBM DB2, Informix).
Finds Data in Removable Media
Scans external storage devices.
Finds Unencrypted Data
Specifically targets data that is not protected by encryption.
Network-Wide Scanning from One Central Location
Scans the entire network from a single point of control.
Not Constrained by File Types
Can search for sensitive data regardless of the file format.
Includes PDF and Standard File Formats
Explicitly supports common document types.
Includes Office 365 Files
Scans data stored within Microsoft Office 365 environments.
Includes ZIP Files
Can scan compressed archives.
Pinpoints PAN, Track Data, PIN, CVV
Precisely locates specific credit card data elements.
Supports Microsoft Exchange Servers Scanning
Scans email servers for sensitive data.
Supports SharePoint Scanning via Web Interface
Allows scanning of SharePoint environments.
Supports Scanning of Images (OCR)
Can identify sensitive data within images using Optical Character Recognition.
Supports IBM Notes
Scans IBM Notes environments.
Supports Custom BIN Range Scanning
Allows specifying custom ranges for Bank Identification Numbers in scans.
Identifies Associated IT Assets
Links discovered data to the IT assets where it resides.
Assessment of Control Effectiveness
Helps clients confirm if appropriate controls are in place for identified data.
Remediation Recommendations
Provides suggestions for implementing additional safeguards or removing unprotected data.
Impact Assessment
Evaluates the potential impact of identified data issues.
Mitigation Recommendations
Offers strategies to reduce the risk associated with data issues.
Technical Solution Recommendations
Suggests specific technical fixes for data issues.
Reduces Level of Effort for Data Management
Simplifies comprehensive data management programs for clients.
Objective Assessment of Internal Data Management Processes
Helps clients evaluate their data processes in operations, engineering, and marketing.
Supports Data Retention & Disposal Practices
Aids in fine-tuning policies for how long data is kept and how it's disposed of.
Compliance with Industry Regulatory Requirements
Specifically helps meet PCI DSS, ISO 27002, and HIPAA requirements.
Enabled by CC-GRC Portal
Clients can monitor engagement progress through the ControlCase GRC portal.
Flexible Service Frequency
Can be performed as a one-time project, or on a scheduled, or as-needed basis.
Remote or Local Service Execution
The service can be run remotely by ControlCase or locally by the client.
Client-Run Scanner Option
Clients can run the scanner themselves and provide raw data for analysis by ControlCase.
Fast Scanning
The CDD scanner is described as fast.
Minimal Resource Usage
Requires minimal system resources.
Advanced False-Positive Management
Aims to significantly reduce false positives for accuracy.
Remediation Dashboard
Shows the exact location of sensitive data to simplify mitigation.
Schedule Scans
Allows scheduling weekly, monthly, quarterly, or continuous scans.
Locates Unencrypted Data in Active Directory Domains
Scans Active Directory for sensitive information.
OS Support
Supports Windows, MAC, and Unix variants (Linux, FreeBSD, Solaris, HP-UX, IBM AIX).
Supports Exclusion/Inclusion of Test Card Data
Allows filtering out test data from scans.
Data Activity Monitoring
Monitors data activity.
Data Classification
Classifies data based on sensitivity.
Encryption, Blocking, Masking, Quarantining
Offers methods for data protection and remediation.
Export Capabilities
Allows exporting of scan results.
PHI (Protected Health Information) Detection
Specifically identifies health-related sensitive data.
PII (Personal Identifiable Information) Detection
Specifically identifies personally identifiable information.
Search for Unencrypted Data Across Local and Network Drives
Scans both local machines and network shares.
Pinpoint Sensitive Data in File Shares, Servers, and Emails
Locates data in key storage and communication points.
24/7 Support
Provides round-the-clock customer assistance.

Pricing

Free trial
Free version
Request a quote
Promo Offer

Countries & Languages

Global
Countries served
4
Interface languages
17
Billing currencies

Interface languages

EnglishSpanishFrenchGerman

Billing currencies

🇺🇸USD🇪🇺EUR🇬🇧GBP🇯🇵JPY🇦🇺AUD🇨🇦CAD🇳🇿NZD🇨🇭CHF🇸🇪SEK🇳🇴NOK🇩🇰DKK🇵🇱PLN🇨🇿CZK🇭🇺HUF🇷🇺RUB🇹🇷TRY🇮🇳INR

No reviews yet

Be the first to drop a review

Alternatives to ControlCase Data Discovery

TraceDock logo

TraceDock

TraceDock is a Customer Data Platform from CM.com that helps users understand the customers as…

D

DroneBase

DroneBase is a drone data software platform from DroneBase that provides aerial imaging solutions for…

B

BotCon

BotCon is an event platform from Hasbro designed for attendees of the BotCon convention. It…

W

WeighMAST

WeighMAST is a weighing management software from Agrimaster designed for agricultural businesses. It provides accurate…

C

Community Sift

Community Sift is a moderation software from Two Hat that helps filter out negative content…

GhostBed logo

GhostBed

[API Error: HTTPSConnectionPool(host='api.openai.com', port=44]

Often compared with ControlCase Data Discovery

Compare any two tools →
TraceDock logo
TraceDock
Data Discovery
0.0
D
DroneBase
Data Discovery
0.0
B
BotCon
Data Discovery
0.0
W
WeighMAST
Data Discovery
0.0