Reviews from AWS customer
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
1,171 reviews
from
External reviews are not included in the AWS star rating for the product.
Great product to help monitor compliance and security with a small team
What do you like best about the product?
It shows us any issues we have in our infrastructure that we can tackle to improve security and stay on top of our compliance. Since we have a small team, a centralized platform like SecureFrame is the only way we could keep on top of these requirements.
What do you dislike about the product?
I think the toughest thing with secure frame is getting all our employees to download and install unsigned installers.
What problems is the product solving and how is that benefiting you?
Security compliance and auditing of our cloud infrastructure. We are a small DevOps team which is also responsible for security within our infrastructure. Without a tool like this, it would be difficult to ensure we are following compliance and keeping our infrastructure as secure as possible
Manage security, risk, and compliance
What do you like best about the product?
A comprehensive compliance solution identifies security issues and assesses risk to improve the security posture.
What do you dislike about the product?
Initial pricing for smaller organizations
What problems is the product solving and how is that benefiting you?
Secureframe automatically runs security checks, flags potential misconfigurations, and gives clear guidance for remediation.
Streamlined compliance with great support
What do you like best about the product?
Secureframe makes it easy to centralize and track all of our SOC 2 compliance requirements. The automated evidence collection from integrated systems saves a significant amount of time compared to manual processes. Their dashboard provides clear visibility into our progress and pending tasks, which helps keep the team on track. Customer support is responsive, knowledgeable, and proactive in following up.
What do you dislike about the product?
There are a few small areas that could be even smoother. Initial setup takes a little time while integrations are connected, and some custom evidence types still require manual handling. Occasionally, synced data from third-party tools takes a bit to update, but it hasn’t caused any real issues. Overall, none of these have been significant enough to impact our workflow.
What problems is the product solving and how is that benefiting you?
Secureframe removes the manual overhead of tracking compliance tasks, collecting evidence, and preparing for audits. By automating integrations with our cloud services, HR systems, endpoint monitoring tools, and other security platforms, it ensures that controls are continuously monitored without constant follow-up from the team. This has reduced our audit preparation time from weeks to days, minimized the risk of missing key evidence, and given us a clear real-time view of compliance health. The result is faster audit readiness, fewer last-minute scrambles, and more time to focus on strategic security improvements.
SecureFrame made compliance awesome
What do you like best about the product?
Our previous auditors had no automation, so for several years I'd spend a week or two every October assembling screenshots and organizing everything. When we switched to SF, we decided to just do things Their Way (TM) and not try to swim upstream at all. After changing around some stuff to pass tests, the audit was trivial and took no time. Now we just check the SF emails to see if there's anything that slipped through in the last week and audits cause no anxiety.
What do you dislike about the product?
The last time I checked (it's been more than a year), the API for automating evidence submission was clunky. Most tests are implemented on the SF side so it's not much of an issue, but the few things that can't be (there are maybe 10 for SOC2 Type II) you still have to upload stuff yourself.
What problems is the product solving and how is that benefiting you?
SF reduces the manual work for compliance audits by 90%. They pair you up with an auditor that knows how to use their product, and then the auditor will have a few extra questions but almost everything in the final report is just done without any effort.
Secureframe has been efficient for our compliance
What do you like best about the product?
Secureframe provides a centralized platform for us to manage new employee onboarding for security compliance, along with completing annual compliance checks and management of our security compliance across in-office and remote employees.
What do you dislike about the product?
The UX can be a bit difficult to navigate as we work with multiple internal stakeholders and consultants. Assigning and uploading/completing security tasks seems more of a checklist function than an actual review.
What problems is the product solving and how is that benefiting you?
We have both in-office and remote employees, and Secureframe manages our new employee onboarding tasks for security compliance. Secureframe also manages all independent security checks/audits that we must complete on an annual basis, and allows us to quickly assign and follow-up across multiple stakeholders and/or facilitators.
Secureframe made HIPAA and SOC 2 compliance surprisingly manageable
What do you like best about the product?
Secureframe turned what could have been months of painful compliance work into a streamlined process. The platform automatically collects evidence from our existing tools and breaks down complex requirements into clear, actionable tasks. Their continuous monitoring means we stay compliant without constantly worrying about it.
What do you dislike about the product?
The initial setup required some time investment to connect all our tools and configure everything properly. But I also understand that there isn't really an alternative.
What problems is the product solving and how is that benefiting you?
Getting HIPAA and SOC2 compliant
Easy to use, full visibility dashboard for SOC2 audits
What do you like best about the product?
It's easy to use, easy to navigate. The user experience is simple, and the integrations are robust. I can see all my items that need to be addressed for my upcoming SOC2 audit in one clear dashboard.
What do you dislike about the product?
No downsides really. It might take a few times to become familiar with the UI, but once you've used it, it becomes second nature.
What problems is the product solving and how is that benefiting you?
SecureFrame makes our yearly audit process for SOC2 go by very smoothly. I can easily see what tests and controls are failing, which ones are weak, and who needs to be responsible for fixing them. It also gives very clear directions on how to address failing tests and uploading evidence is easy. It will also give a historical view (if you've used it for previous audits) and that makes it easy to remember what you uploaded last time to pass the audit.
We love Secureframe!
What do you like best about the product?
Secureframe has been instrumental in helping us manage our SOC 2 Type II and ISO 27001 compliance. After three years of using the platform, we can't imagine handling our compliance processes any other way. It's become an essential part of our workflow—and we’re such strong advocates that we recommend it to our clients at every opportunity.
What do you dislike about the product?
It needs more integrations with other IT products
What problems is the product solving and how is that benefiting you?
Secureframe helps us solve several critical business challenges related to compliance and operational efficiency. It streamlines the complex process of managing SOC 2 Type II and ISO 27001 requirements, significantly reducing the time and effort typically required to stay audit-ready. By automating evidence collection, continuous monitoring, and reporting, it minimizes the risk of non-compliance and provides clear visibility into our control environment. This not only ensures we maintain regulatory standards but also strengthens client trust and market credibility. As our organization grows, Secureframe enables us to scale our compliance programs without adding unnecessary overhead—making it an indispensable part of our operations.
Streamlined Compliance in one platform
What do you like best about the product?
We've been using Secureframe for compliance, asset management, and vendor management. It's streamlined our processes, made audits easier, and provided great visibility into our security posture. Highly recommend for growing teams looking to stay on top of compliance. Customer Support is always responsive.
What do you dislike about the product?
There are some finicky features that can be improved.
What problems is the product solving and how is that benefiting you?
Secureframe helps us stay audit-ready year-round by automating evidence collection, managing assets, and tracking vendor risk. It reduces manual effort, improves visibility, and ensures we're always aligned with frameworks like SOC 2 and PCI. This saves us time and gives our stakeholders more confidence in our security posture.
Effortless compliance management with top-notch support
What do you like best about the product?
Secureframe makes SOC 2 and ISO 27001 compliance management incredibly straightforward with its intuitive dashboard, automated evidence collection, and continuous monitoring. The integrations with cloud services and security tools save countless hours, and the real-time alerts help us stay audit-ready without stress. Their customer success team is proactive, knowledgeable, and always quick to respond, making the entire compliance process smooth.
What do you dislike about the product?
While Secureframe is a powerful platform, the initial setup can feel overwhelming due to the number of integrations and configurations required. Some reports could be more customizable to fit unique organizational needs, and expanding training resources for first-time users would be a welcome improvement.
What problems is the product solving and how is that benefiting you?
Secureframe has streamlined our entire compliance lifecycle—from SOC 2 and ISO 27001 readiness to ongoing monitoring—saving us weeks of manual work. Automated evidence collection, integration with our cloud stack, and continuous security checks have reduced audit preparation time and helped us pass assessments with fewer findings. It has also strengthened vendor risk management by giving us a centralized way to assess and track third-party compliance, ensuring we meet regulatory and customer security expectations.
showing 701 - 710