Listing Thumbnail

    Secureframe Automated Security, Privacy & Compliance Platform

     Info
    Sold by: Secureframe 
    Vendor Insights
    Secureframe is the leading, all-in-one platform for security, privacy and compliance. Through our world-class governance, risk and compliance (GRC) solutions, Secureframe makes it fast, easy, and cost effective for organizations of all sizes to achieve and maintain security, privacy and compliance.
    Listing Thumbnail

    Secureframe Automated Security, Privacy & Compliance Platform

     Info
    Sold by: Secureframe 

    Overview

    Play video

    Secureframe's world-class governance, risk and compliance (GRC) solutions helps customers continuously uphold the most rigorous global standards, including SOC 2, ISO 27001, ISO 27701, HIPAA, GDPR, CCPA, NIST 800-53, NIST 800-171, NIST CSF, NIST Privacy Framework, CMMC, PCI DSS SAQ-A, PCI DSS SAQ-D for Merchants and Service Providers, Microsoft SSPA, and MVSP. Secureframe enables organizations to focus on what matters: serving their customers (securely) to grow their business.

    Secureframe delivers: -Continuous monitoring -Automated tests -Machine learning-powered RFP and security questionnaire completion with knowledge base management -Personnel and asset inventory management -Vendor access and risk management -Risk Register -Enterprise policy management -Data rooms -Readiness reporting

    We combine the power of technology and expert guidance to provide an end-to-end automated security, privacy and compliance solution. Every customer is assigned a dedicated compliance expert, an ex-auditor who can help answer complicated and specific questions that come up, especially during the audit process.

    Secureframe's modern, all-in-one security, privacy and compliance platform makes the compliance process fast and easy with:

    -Automated Evidence Collection. More than 100+ integrations with core services such as AWS, Asana, Azure, G Suite, Google Cloud, Github, Gusto, JAMF, Okta and Slack automatically and continuously collect audit evidence, monitor your cloud infrastructure for nonconformities, and more.

    -Prebuilt, Customizable Security Policies. We provide standard templates for policies that can be edited to meet your organization's specific needs. Our templates ensure your policies meet the high standards of an auditor or regulatory framework.

    -A Robust, Scalable Platform. Whether you're using multiple CSPs or have hundreds of AWS instances, we can support your unique setup and scale with your business.

    -Secureframe Questionnaires. Secureframe's machine learning-powered solution makes it fast and easy to respond to RFP's and security questionnaires. Our platform pulls the best answer for each question based on approved past responses so you can return completed answers back to your customers, in their original format, fast. Accelerate deals, unlock revenue and gain an edge on your competitors.

    Below pricing is valid for up to 100 employees. Secureframe Platform SKU must be purchased in order to purchase First Framework. Customers with less than 10 employees are eligible for additional discounts. Customers purchasing multiple frameworks can also receive special discounts. For custom pricing, EULA, or a private contract, please contact marketplace@secureframe.com , for a private offer.

    Highlights

    • Automated Evidence Collection: More than 100+ integrations with core services such as AWS, Asana, Azure, G Suite, Google Cloud, Github, Gusto, Jamf, Okta and Slack automatically and continuously collect audit evidence, monitor your cloud infrastructure for nonconformities, and more.
    • Prebuilt, Customizable Security Policies: We provide standard templates for policies that can be edited to meet your organization's specific needs. Our templates ensure your policies meet the high standards of an auditor.
    • A Robust, Scalable Platform: Whether you're using multiple CSPs or have hundreds of AWS instances, we can support your unique setup and scale with your business.

    Details

    Delivery method

    Features and programs

    Vendor Insights

     Info
    Skip the manual risk assessment. Get verified and regularly updated security info on this product with Vendor Insights.

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Secureframe Automated Security, Privacy & Compliance Platform

     Info
    Pricing is based on contract duration. You pay upfront or in installments according to your contract terms with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.

    12-month contract (2)

     Info
    Dimension
    Description
    Cost/12 months
    Platform
    Access the Secureframe Platform up to 100 Employees
    $7,500.00
    First Framework
    Choice of any Framework
    $7,500.00

    Vendor refund policy

    All fees are non-cancellable and non-refundable.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Resources

    Support

    Vendor support

    All Secureframe subscriptions include hands-on guidance with a dedicated customer success manager and access to our in-house compliance experts and former auditors. Our team operates standard hours 9am - 5pm across all US Time Zones. Select customers are also eligible for a dedicated Slack channel to provide easy communication and feedback. For additional details on our support offerings, please contact the email below: support@secureframe.com 

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Similar products

    Customer reviews

    Ratings and reviews

     Info
    0 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    0%
    0%
    0%
    0%
    0%
    0 AWS reviews
    |
    369 external reviews
    External reviews are sourced from G2  and are not included in the star rating for this product.
    Louizos Alex L.

    Streamlined experience for a very difficult process otherwise

    Reviewed on Dec 16, 2024
    Review provided by G2
    What do you like best about the product?
    The way it helps me organize my SOC II requirements, tests and processes. Customer support is prompt and very helpful throughout the process
    What do you dislike about the product?
    Rarely its tough to connect something to the API
    What problems is the product solving and how is that benefiting you?
    Getting through the process of SOC II type 2 audit is very bureaucratic and frustrating. Secureframe organises the whole process and makes it easier for us and the auditor to get through it effectively. It helps us organise the tests and helps us monitor the compliance with each of the tests. It helps us organise the employees and contractors and get them compliant and security trained. I believe it would be almost next to impossible to organise all these tests and prove that we are compliant if we did the audit without the Secureframe platform
    suman m.

    Secure Frame too evaluation

    Reviewed on Dec 02, 2024
    Review provided by G2
    What do you like best about the product?
    The user interface is super easy to use and very intuitive and the best thing is competetive price for companies that can't afford to use, for soc2 compliance
    What do you dislike about the product?
    I find some of the integrations with third party doesn't have set-up instructions for exam ple windows agent, I have to rely on some one to show me how it works
    What problems is the product solving and how is that benefiting you?
    we are using it for soc2 compliance for our SaaS product
    Education Management

    Disappointingly focused on checklists over business value

    Reviewed on Nov 27, 2024
    Review provided by G2
    What do you like best about the product?
    This tool is focused on automated compliance checks, and takes the hard work out of performing the checks it is able to automate. You can also add manual checks and carry those out yourself.
    What do you dislike about the product?
    The overall product is focused on meeting checklists over business value. If you want to do information security based on first identifying risks, prioritising the ones that matter, and then addressing things that look important - it's not the product for you.
    What problems is the product solving and how is that benefiting you?
    Using Secureframe avoids writing your own web app, or complicated spreadsheet, to track compliance of an IT asset inventory. You even get some of the data points filled in automatically.
    Jack M.

    A great security tool with so many uses.

    Reviewed on Nov 25, 2024
    Review provided by G2
    What do you like best about the product?
    The user interface is super easy to use and very intuitive, it has a great number of useful features, the integrations are very fast and effective, and we have always felt supported by their great customer support team.
    What do you dislike about the product?
    I wish the automated vendor reviews were part of the basic version. Also I wish you could batch apply settings to multiple selected tickets. And the saving each individual setting in each ticket can be tedious - I wish there was a "Save and Close" Function for all settings in each ticket.
    What problems is the product solving and how is that benefiting you?
    Keeping security checks and policies all in a centralized location.
    Computer Software

    Great way to simplify SOC2 compliance and tracking

    Reviewed on Nov 20, 2024
    Review provided by G2
    What do you like best about the product?
    It was extremely simple to get started, and they have everything we needed to get SOC2 compliant and maintain monitoring without having to go through a lengthy process. For a startup where SOC2 is important, but our team doesn't have budget for a dedicated security and compliance team, it was great. The integrations with the 3rd party applications for ongoing monitoring were great, and the continuous compliance checklist is helpful as well. Implementation was easy, and provided policy docs helped us have a great starting point. They also had a great customer success team to help us get things going, and partners for low cost, but reputable, audits and penetration tests. We have used it for SOC2 type 1 and type 2.
    What do you dislike about the product?
    The device management and asset tracking could be better, but seems to be improving. I also wish the tasks for team members for ongoing activities like yearly security trainings, device management, etc. would be more clear. Last, adding HIPPA compliance checklists without a significant additional cost or separate process would be nice.
    What problems is the product solving and how is that benefiting you?
    Simplifying SOC2 compliance so that a startup can maintain SOC2 compliance, maintain evidence for monitoring periods, etc. wihtout a large security team or overly difficult process.
    View all reviews