Reviews from AWS customer
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
1,166 reviews
from
External reviews are not included in the AWS star rating for the product.
Secureframe Makes Audit Prep Faster, Easier, and Less Stressful
What do you like best about the product?
Secureframe has significantly reduced the time and effort needed to prepare and share evidence for audits. Its integrations, combined with the ability to store and reference previous years’ screenshots and documentation—automatically indexed and retired when needed—are a game changer. Instead of reinventing the wheel for each audit, we can reference what passed review in the past, making SOC 2 and PCI compliance work far less stressful. The built-in best-practice templates for policies and addendums also make it easy to stay aligned when audit frameworks are updated.
What do you dislike about the product?
The onboarding process was challenging, though the Secureframe team provided excellent guidance throughout. One feature I’d like to see is the ability to tag AWS assets as “out of scope” directly in the platform—something AWS Security Hub also lacks. This would help automate some manual steps we still perform today.
What problems is the product solving and how is that benefiting you?
By serving as a centralized, auditor-friendly repository for our compliance evidence, Secureframe streamlines audit preparation, reduces manual work, and ensures no control or test is overlooked before an audit begins.
Great Product That's Affordable For Bootstrapped Startups
What do you like best about the product?
The customer support from Secureframe was excellent. Since this was our team's first time undergoing a SOC 2 audit, we had many questions about how to implement various controls. However, our support representative was very knowledgeable and patient, guiding us through the process.
Another great aspect of Secureframe is the price. Compared to many other compliance software solutions, Secureframe is quite affordable, especially for smaller businesses. Despite its lower cost, the platform is comprehensive and offers many of the core features found in more expensive competitors.
Another great aspect of Secureframe is the price. Compared to many other compliance software solutions, Secureframe is quite affordable, especially for smaller businesses. Despite its lower cost, the platform is comprehensive and offers many of the core features found in more expensive competitors.
What do you dislike about the product?
It felt like the Secureframe device monitoring agent could be a bit finicky at times. We had trouble installing it on some of our employees' devices, and it could take a while for the devices to show up in the Secureframe dashboard. Also, there could sometimes be a bit of lag when syncing information from external systems into Secureframe.
What problems is the product solving and how is that benefiting you?
We used Secureframe to help us prepare and conduct our SOC 2 type II audit.
Exceptional platform with a team that helps you succeed
What do you like best about the product?
The platform lays out everything you need to become compliant. Secureframes team members provide excellent feedback and advice. Jon G. has helped me tremendously through my this process.
What do you dislike about the product?
No real complaints here. I had trouble finding one thing but a quick email to secureframes staff and that was fixed
What problems is the product solving and how is that benefiting you?
The complexity of becoming SOC2 complaint has become easier with secureframe platform
Streamlined SOC 2 Compliance and great Customer Service/Support
What do you like best about the product?
Our customer success representative (Coletta) has been exceptional; responsive, knowledgeable, and proactive in guiding us through the compliance process. That helped us get SOC2 certification in 3 months.
What do you dislike about the product?
The platform can feel overwhelming at first due to the amount of information and configuration options.
What problems is the product solving and how is that benefiting you?
Secureframe streamlines SOC 2 compliance by centralizing evidence collection, automating security checks, and providing clear audit readiness tracking. This has saved our team significant time, reduced manual errors, and accelerated our path to certification, allowing us to focus on core business operations.
A Time-Saving and Effective Solution
What do you like best about the product?
What stands out about SecureFrame is how intuitive and efficient it is. It simplifies complex compliance tasks and automates workflows, which helps us stay on top of everything without the constant back-and-forth. The platform also offers great support whenever needed, which adds to the overall experience.
What do you dislike about the product?
None so far at the moment. We've been using SecureFrame for our SOC 1 and SOC 2 Type 2 frameworks, and it’s been a huge time-saver. The platform streamlines the compliance process, saving us both time and effort.
What problems is the product solving and how is that benefiting you?
SecureFrame solves the challenge of managing and streamlining SOC 1 and SOC 2 Type 2 compliance. It simplifies complex and time-consuming tasks like documentation, evidence collection, and audit preparation.
Simple solution for employees, could be better for auditors
What do you like best about the product?
- The employee portal in Secureframe is simple and clean. It clearly tells employees what tasks they have outstanding, and the mandatory trainings for things like GDPR are clear, concise, and don't take too long to complete.
- I like that it acts as a one stop shop for risks, vendors, policies, and assets
- The red, yellow, green symbols are helpful for easily seeing where gaps might exist
- I like that it acts as a one stop shop for risks, vendors, policies, and assets
- The red, yellow, green symbols are helpful for easily seeing where gaps might exist
What do you dislike about the product?
- As someone who helps with our organization's internal audits, it seems like sometimes Secureframe will indicate that a framework requirement is "passing" because there is a policy linked, but it does not consider what is actually in that policy. It feels like in the age of AI, there should be a way for Secureframe to scan the contents of a policy and give auditors a more accurate answer of whether everything that needs to be in the policy is actually there.
- I wish that Secureframe allowed you to search the contents of all policies at once. Currently the search functionality only matches on policy title.
- I wish that Secureframe allowed you to search the contents of all policies at once. Currently the search functionality only matches on policy title.
What problems is the product solving and how is that benefiting you?
- Secureframe houses our security policies and risk registrar. It makes it easier to conduct our internal audits for ISO 27001.
SOC@ / HIPAA
What do you like best about the product?
Secureframe made our SOC 2 certification process smooth and efficient. Their platform streamlined documentation, guided us through every requirement, and kept our team on track. Thanks to their expertise, we achieved certification faster and with complete confidence. Highly recommended!"
What do you dislike about the product?
Secureframe made our SOC 2 certification process smooth and straightforward. Everything was well-organized, clear, and efficient from start to finish. A great experience.
What problems is the product solving and how is that benefiting you?
so far none
Streamlined Compliance with Minor Document Management Hiccups
What do you like best about the product?
I appreciate Secureframe's ease of use and its ability to track and monitor our systems effectively. The setup process was straightforward, with guidance provided by their support team. The weekly updates on task statuses are extremely helpful for managing our process. I value the integration with tools like Office 365 and CrowdStrike, particularly how it automatically adds new employees into the system for seamless notifications and training.
What do you dislike about the product?
I would like to be able to upload documents more easily. Currently, it involves a cumbersome process of recreating the document or downloading, editing, and then uploading it back. It would be more efficient if I could integrate a Microsoft SharePoint file location to update the same documents continuously or create subfolders within SharePoint for ongoing data collection and storage.
What problems is the product solving and how is that benefiting you?
Secureframe ensures our SOC 2 accountability by constantly reminding updates, tracking task progress with weekly updates, and integrating with tools like Office 365 for automation, enhancing our compliance process and monitoring effectiveness.
It is better than Vanta and Drata the two biggest competitors
What do you like best about the product?
I love how they have people specialized whenever you have a question. Their AI tooling to help generate, as I'd call it busy work for you is amazing. They have the end to end process down and can guide you through any step. They also had/have the best pricing for a startup I've seen. So at the end of the day the ease of use, the structure on how they work, the integrations they offer, it made this a no brainer for the cost. We need SOC2 and this is the best path forward.
What do you dislike about the product?
I honestly don't have any if I were to say, the only thing is more automation, if for instance we don't have a minimum password length in AWS, just go in and modify the settings for me. But that presents it's own problems.
What problems is the product solving and how is that benefiting you?
It's SOC2.... and then if you want to get other controls like ISO/HIPPA/etc they have those baked in.
Worth Every Penny for Time-Strapped Founders
What do you like best about the product?
The clarity! I do not have the time when bootstrapping for creating a complex system as a founder wearing multiple hats. It reduces everything to simple tasks such as — Update password policy by Friday. Microsoft 365 integration is so natural that it auto-collects 80% of our evidence for us. The best part? The pre-filled security questionnaires that shaved days off of our RFP response.
What do you dislike about the product?
The knowledge base is not as inclusive. I often have to reach out to support for things that should be documented. The setup took a little longer than I anticipated (about 3 weeks for some legacy systems).
What problems is the product solving and how is that benefiting you?
We were required to be ISO 27001 compliant to enter into a key partnership, but none of us had any compliance experience. It was made possible with Secureframe (No need to have expensive consultants!) Unexpected benefit? We use Secureframe train our employees securely so all of your training can be done before you are even day 1 new hire.
showing 651 - 660