Reviews from AWS customer
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
957 reviews
from
External reviews are not included in the AWS star rating for the product.
SOC2 Made Easy
What do you like best about the product?
Secureframe makes the SOC 2 compliance process structured and transparent. I like that it centralizes evidence collection, automates a lot of recurring security tasks, and integrates with our core systems (like cloud infrastructure, HR tools, and ticketing systems). For a business that handles sensitive resident data and compliance records, having real-time visibility into audit readiness reduces risk and saves me time that I can redirect to product strategy. Their dashboards and reminders help keep engineering, security, and compliance stakeholders aligned without a ton of manual follow-up.
What do you dislike about the product?
While Secureframe is strong on automation, some integrations can feel rigid — if your workflows or tools deviate from the “happy path,” you may need workarounds. The UI can get cluttered when you’re tracking a large number of controls across multiple frameworks. Occasionally, response times for support on more technical questions can lag when you need a quick resolution to keep compliance tasks moving.
What problems is the product solving and how is that benefiting you?
Secureframe is solving the pain of manual SOC 2 compliance tracking and audit preparation. Before, ensuring ongoing compliance meant chasing down evidence from multiple teams, checking configurations manually, and worrying about whether we were truly “audit ready.” Now, Secureframe continuously monitors our systems, flags gaps proactively, and standardizes the evidence collection process. This gives me confidence that we’re protecting resident data in accordance with industry best practices, which strengthens our trust with property management clients and helps avoid costly delays or fines in our compliance-driven business
Excellent experience with Secureframe Platform
What do you like best about the product?
A centralized portal for managing SOC 2 compliance efforts and ongoing management. It was very easy to implement, and I'd say you can set it up for use within an hour. It offers a number of integrations so that it can easily scan for compliance gaps and provides remediation instructions.
What do you dislike about the product?
Nothing to mention. I'd say they may add more integrations in the future.
What problems is the product solving and how is that benefiting you?
SOC2 Compliance Management
Excellent Product with Responsive Support
What do you like best about the product?
I like how it makes it easy to understand where your SOC security posture is
What do you dislike about the product?
I wish there was a bit more rigorous testing when new tools and tests and introduced.
What problems is the product solving and how is that benefiting you?
THis is helping us to pass SOC2 audits in a quick and effective manner with less back and forth with auditors
Simplifying Compliance with a User-Friendly, Centralized Platform
What do you like best about the product?
What I appreciate most is having all of our compliance documentation in one central place. The platform is intuitive and makes it easy to view my tasks, update details, and track progress. Even our auditor, who had never used Secureframe before, was able to navigate it without any issues and quickly find the documents they needed. That alone saved us a lot of time and back-and-forth.
What do you dislike about the product?
The main drawback is that it can feel a bit rigid. In some cases, it keeps my previous filtering settings, so I have to manually reset them to get a clear view of everything. It’s a small detail, but it can slow things down when I’m searching for information.
What problems is the product solving and how is that benefiting you?
Before Secureframe, managing compliance documentation and keeping track of evidence was scattered and time-consuming. The platform solves this by centralizing everything, making it easy to assign tasks and gather information in one place. This has helped us reduce confusion, avoid duplicated efforts, and respond quickly to auditor requests. Overall, it’s saved us time and reduced the stress around preparing for audits.
Incredibly helpful tool for managing SOC compliance
What do you like best about the product?
There are three features that I share with people when they ask about Secureframe. 1) The EMPLOYEE ONBOARDING tool is extremely helpful for me to keep annual policy agreements, security training, and device enrollment up to date. 2) Connecting our Azure subscription gives me metrics on compliance to SOC requirements and leaves me confident with our system standing. 3) Being able to set up due dates for evidence expiration in line with our policies.
What do you dislike about the product?
It can be intimidating setting things up, but I think that speaks more to our initial Azure setup more than Secureframe's ability to guide us. If a control is not passing, the guidance on how to address it in Azure is at times outdated. It's gotten better. For the most part the instructions are exactly what I need.
What problems is the product solving and how is that benefiting you?
Secureframe helps us monitor and keep our SaaS solutions in line with SOC 2 standards.
Government Sector SOC2
What do you like best about the product?
Secureframe made our SOC 2 journey seamless and efficient. For a government sector, we leveraged Secureframe to manage the end-to-end compliance process, and we successfully completed our SOC 2 audit without delays or surprises. The platform’s automated evidence collection, continuous monitoring, and clear task management significantly reduced the manual overhead and audit preparation time. I especially appreciated the intuitive dashboard, which gave real-time visibility into our compliance status, and the responsive support team who provided expert guidance at every step. Secureframe not only simplified compliance but also built confidence with our stakeholders that we maintain strong security and privacy controls.
What do you dislike about the product?
While Secureframe made our SOC 2 process smooth, there’s room for improvement in customizing certain workflows to better match complex enterprise processes. In some cases, we had to adapt our internal procedures to fit the platform’s predefined structure. Also, a few integrations required manual fine-tuning to ensure full data sync. These weren’t blockers, but addressing them would make the experience even more seamless for large-scale compliance programs.
What problems is the product solving and how is that benefiting you?
Secureframe automated and streamlined our entire SOC 2 compliance process for government project we're working on, replacing what would have been months of manual evidence gathering and audit preparation. It solved the challenge of tracking multiple controls, gathering evidence from different systems, and staying audit-ready year-round. With continuous monitoring, integration to our tech stack, and real-time compliance tracking, we reduced audit prep time, minimized human error, and built stronger trust with stakeholders by demonstrating robust security and privacy practices
Streamlines SOC 2 and HIPAA with Minimal Overhead
What do you like best about the product?
Integrated with SOC 2, HIPAA, ISO 27001 pre-built frameworks and 1Password for Teams which makes it easy to enforce password policies across teams. Implementation was a doddle and we were audit ready in 8 weeks. Cons: The only issue is they do not have a instant messaging support, customer needs to create tickets which is bit of pain for customer to wait till the issue resolves. There are also many other features, vendor assessment alone comes with dozens of vendors.
What do you dislike about the product?
No table/chart based advanced formatting in policy editor, Tracking employee acknowledgements is not that good and can be improved in Microsoft 365 UI. API workarounds to play nicely with niche tools (our legacy HR system).
What problems is the product solving and how is that benefiting you?
It has replaced spreadsheets and manual audits, reducing our compliance workload by 50%. Automated reminders for control reviews — nothing will ever fall through the cracks.
Streamlining Compliance with Ease
What do you like best about the product?
Secureframe significantly accelerates the path to compliance readiness. It provides a well-defined requirement-gathering process and an AI feature that quickly responds to most basic recommendations, saving time and effort.
What do you dislike about the product?
There’s little to dislike, but the AI participation could be improved to provide more advanced and context-aware recommendations.
What problems is the product solving and how is that benefiting you?
Secureframe streamlines the compliance journey by centralizing requirement tracking, automating evidence collection, and offering AI-powered guidance. This reduces manual effort, shortens audit preparation time, and ensures we stay aligned with compliance frameworks more efficiently.
Game Changer for Compliance Audits
What do you like best about the product?
The efficient streamlined workflow - As an auditor, clients can easily understand what's required, and I can track completion status without constant check-ins. It's quite easy to implement a new information security program when utilizing Secureframe.
What do you dislike about the product?
I wish Securefame would improve their automated control testing using the integrations.
What problems is the product solving and how is that benefiting you?
Manual compliance testing used to mean spending countless hours collecting screenshots, documentation, and evidence manually. We've reduced our compliance prep time from 3 months to 3 weeks through automated evidence collection.
make audit readiness seamless
What do you like best about the product?
The guided checklists and expert recommendations cut out guesswork and kept us on a fast track to audit readiness. Everything—controls, assets, vendors, policies—lives in one place with real-time status, so there are no surprises at audit time.
What do you dislike about the product?
Alerts can be noisy until you spend time tuning them. I’d love more granular suppression rules and better bulk-acknowledge tools.
What problems is the product solving and how is that benefiting you?
urn compliance work into real-time status instead of monthly slide decks. Leadership sees blockers, trends, and audit readiness at a glance.
showing 341 - 350