Reviews from AWS customer
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
1,070 reviews
from
External reviews are not included in the AWS star rating for the product.
Our supply chain and customer trust in eyewear retailing are paramount to us.
What do you like best about the product?
As a CEO operating in the eyewear retail industry, where we work with sensitive customer information (facial measurements for virtual try-on) and vast networks of suppliers, Secureframe’s Third-Party Risk Management tool is invaluable to us. It's also in a class of its own when it comes to the user-friendliness of supplier evaluation and monitoring - whether your suppliers are lensmakers or logistics partners. It was easy to set up, with pre-made questionnaires and automations that fit in well with how we worked. Archer staff customize a retail-specific list of questions, real-time risk scoring and collection of evidence make sure we do not overlook a compliance gap. Integration was straightforward with our ERP and e-commerce systems.
What do you dislike about the product?
The CAPEX was an important one time cost but a small consideration in the overall risk reduction and efficiencies that it provided. I’d also love to see templates for niche suppliers (like opticalrtners) since other suppliers just don’t fit in most instances.
What problems is the product solving and how is that benefiting you?
Secureframe addresses one of the biggest challenges to securing, our extended supply chain. We have home try-on services and virtual try-on technology, and need to ensure that we put every third-party partner through rigorous security and privacy criteria. Secureframe automates vendor security questionnaires, collects SYS and risk assessments on autopilot, monitors your vendors continuously for risks, and makes it easy to provide auditable evidence of your cybersecurity efforts. This is a win-win for us; we protect our customers’ personal data, reduce operational risk and build brand confidence--three factors that underpin GDPR, CCPA and SOC 2.
Turning Compliance Chaos Into Calm With Secureframe
What do you like best about the product?
Secureframe didn't just plug into GitLab it understood it. Setup was intuitive and the UI actually made audit tracking feel manageable. Their reminders, dashboards and workflows reduced fire drills before audits. It blended into our existing tools without breaking anything.
What do you dislike about the product?
If I had to nitpick, initial policy templates templates felt generic until we customized the,. Also while support was quick, the in app help docs could go deeper for some niche GitLab CI/CD scenarios. But nothing slowed us down just a few bumps during onboarding,
What problems is the product solving and how is that benefiting you?
We Needed a clear way to manage audits for our GitLab Workflows without adding overhead to our dev team. Secureframe helped us centralize evidence collection, flag audits risks early and maintain real time compliance posture freeing us from messy spreadsheet tracking.
A Reliable Partner in Navigating Third Party Risk with Confidence
What do you like best about the product?
Secureframe is a easy to use platform, and their team has been incredibly helpful whenever we had questions.
What do you dislike about the product?
The setup had a few hiccups, especially connecting with some internal tools, but once it was running, things smoothed out. it's been a reliable tools that's taken a big load off our compliance and security teams.
What problems is the product solving and how is that benefiting you?
Working with Secureframe made managing third party and supplier risk at sorcero so much easier. Before, it felt like we were constantly scrambling to vet vendors and track down security documentations. Now everything's in one place and their system helps us spot risk early without all the manual work.
Extends Our Compliance Oversight to the Entire Software SupplyChain
What do you like best about the product?
We like Secureframe’s software supply chain and vendor risk functionalities a lot. We do not just write our own code – we have a huge number of third-party libraries and services we rely on. So managing that risk is critical. Secureframe automates the security questionnaires for our vendors and provides insights into their compliance posture.
It easily integrates with our GitHub organizations and then monitors for vulnerabilities in our dependencies. This holistic view is very helpful for a financial services company like ours, where a breach in a third-party tool could be as devastating as in our own core platform.
It easily integrates with our GitHub organizations and then monitors for vulnerabilities in our dependencies. This holistic view is very helpful for a financial services company like ours, where a breach in a third-party tool could be as devastating as in our own core platform.
What do you dislike about the product?
While the vendor risk database is pretty extensive, some newer, niche blockchain infrastructure providers can have very little data in it. This puts the onus back on us to do detailed assessments in some cases.
What problems is the product solving and how is that benefiting you?
It resolves the blind spot of third-party and open-source risk.
In DeFi sector, there is a saying, that you have to trust but verify. Secureframe gives us the framework for that verification. That is, every link in our technical chain is secure certified. This protects our platform from upstream vulnerabilities and gives regulators an excellent clear view of how we manage our full software supply chain.
In DeFi sector, there is a saying, that you have to trust but verify. Secureframe gives us the framework for that verification. That is, every link in our technical chain is secure certified. This protects our platform from upstream vulnerabilities and gives regulators an excellent clear view of how we manage our full software supply chain.
Slashed Our Third-Party Vendor Onboarding from Weeks to Days.
What do you like best about the product?
The vendor risk management module alone is worth the price of admission. Any retail project that requires us to bring in a new supplier, payment processor, marketing tool, we now have a standardized automated security assessment process to kick off. It’s so easy to use! I launch a detailed security questionnaire to a vendor in a few clicks and track progress in real-time. This has really sped up our onboarding timelines. The customer support team helped us customize these assessments for the unique risks in retail. It was very easy to integrate into our procurement workflow.
What do you dislike about the product?
The platform is so powerful that it’s probably overkill for assessing very low-risk vendors (like a one-time event caterer). A lite assessment path would be useful.
What problems is the product solving and how is that benefiting you?
We had a massive project bottleneck — security reviews of new vendors. This was manual and slow and was holding up critical projects. Now, we have a fast, rigorous and documented process that meets all our compliance needs and allows projects to get off the ground faster — this fits into our overall time-to-market metric for new initiatives.
We Built In Compliance Right Down to Our DevOps Pipeline
What do you like best about the product?
It was its evolution / design as API-first and extreme ease of automation into our CI/CD tools first and foremost (Jenkins, GitLab). We’ve even gone so far as to bake compliance checks into our deployment pipelines. Now, a pull request cannot be merged if it introduces a security misconfiguration that would have broken a SOC 2 control. This “shift-left” has been revolutionary. The usability for my team is great; it speaks our language with IaC scanning as well as real time alerts. Our AWS environment is now silently being collected, automatically updating with our evidence to avoid this being a "4 x year" process.
What do you dislike about the product?
The Terraform provider is also still a bit green. We can work around with some resources but we’d love to have all available feature parity with Web UI ( in this case Dashboard ) so that hey, we could truly manage our compliance posture as code.
What problems is the product solving and how is that benefiting you?
It removes the “audit panic” that jangles around our sprint cycles. We have a system in which there is always on, always audit-ready data and never a need to go through the laborious process of collecting evidence for auditors. This is perfect for our blockchain lending platform since every deployment is by default complaint (a must-have when dealing with financial data and crypto collateral).
Easy to use, SOC2 complains fast
What do you like best about the product?
Easy to use, follow the Security complains in a easier way. Integration with AWS, GitHub, ClickUp and other tools is smooth
What do you dislike about the product?
Some of the AWS test are not 100% accurate but they keep improved
What problems is the product solving and how is that benefiting you?
Speed up product compliance to be SOC2 Type 1 and Type 2 tests
Operationalized HIPAA Compliance Mitigated Institutional Risk
What do you like best about the product?
Secureframe turned a previously ad hoc, manual task into an operationalized one. Nothing comes close in ease for tracking and handling the compliance lifecycle from policy attestations, employee training to vendor risk assessments. It gives me a single-pane of glass that I, in my role as COO, am able to leverage and see our security posture in real time. The implementation was smooth and efficient, the team got our EHR system and Active Directory integration. The customer service is outstanding and oftentimes they have been an extension of our team to help guide us through convoluted HIPAA/HITECH parameters. The features, in particular…," and "automated evidence collecting, as well as pre-built policy templates all saved us a lot of time (and legal fees".
What do you dislike about the product?
It was a significant operational cost for us to ensure we had data isolation in this way, but the ROI through reduced risk and saved staff time has justified it. It’s deep; non-technical department heads can be overwhelmed (we wound up developing internal training on this just so clinical managers could find and respond to their tasks).
What problems is the product solving and how is that benefiting you?
It addressed the key issue of institutional risk management. In health care, a compliance failure isn’t just a financial punishment; it’s an erosion of patient trust on an epic scale. Secureframe is a certifiable audit-ready system that illustrates how committed we are to the protection of Protected Health Information (PHI). This is good for our company by de-risking our organization, reducing the complexity of our audit from our external auditors and ultimately being able to tell to patients we can safeguard their data.
Cloud Compliance Made Simple and Stress Free
What do you like best about the product?
I appreciate Secureframe's interface and smooth integrations with our cloud platforms. The ease of implementations and frequent updates keep us ahead in compliance. Their customer support is exceptional responsive and knowledgeable always ready to resolve issues quickly.
What do you dislike about the product?
While Secureframe cover most compliance needs, occasionally the depth of some features feels limited for highly complex environments'. Also some integrations cloud be more seamless, Overall there are minor compare to the benefit and excellent support provided.
What problems is the product solving and how is that benefiting you?
Secureframe helps us take out of cloud compliance by automating audits and keeping our security check up to date. For Capgemini, this means less manual work and fewer worries about meeting regulations across different client setups.
Secureframe makes Audit Management Simple and Stress free
What do you like best about the product?
We Really love how intuitive the platform is. The dashboards give us clear visibility into controls and their team is incredibly responsive ,customer support truly feels like a partner.
What do you dislike about the product?
Somme Initial integrations took a bit longer than expected . A few features felt hidden in the UI, but once we got used to the layout, it wasn't a blocker.
What problems is the product solving and how is that benefiting you?
Secureframe streamlines audit prep and compliance tracking, it's reduced manual effort and helped us stay audit ready without scrambling at the last minute.
showing 81 - 90