Save to My Lists

Secureframe Reviews & Product Details

RB
Chief Technology Officer, Manager - Web Services
Small-Business(50 or fewer emp.)
Validated Reviewer
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Secureframe?

We used Secureframe to streamline our ISO 27001 compliance efforts. Before that, we worked with consulting companies that either had their own, not-so-great compliance tools or had us managing everything manually with Excel files and Dropbox—an incredibly tedious process. A colleague recommended Secureframe, and it’s been a complete game changer for us.

The integration features are outstanding. We connected it to our Azure account (and other SaaS platforms we use), and it immediately identified configuration changes we needed to make. The system provided easy-to-follow instructions to help us harden our setup and ensure compliance with our policies. This automation not only made the process smoother, but it also simplified showing evidence of controls to auditors.

Secureframe’s built-in content management system for policies is another great feature. It tracks version history and allows employees to log in and review policies based on their roles. This ensures everyone is reviewing the required policies annually for compliance.

I also found the Vendor section extremely useful. It enables us to assess and rate the risks associated with our suppliers and keep track of their compliance documents. The integrated risk register is another standout feature. While I could go on about many more features, these are the ones that have been particularly impactful for us.

We just completed our annual surveillance audit, and it went incredibly smoothly. Our external auditor, who’s quite old-school, was initially skeptical of Secureframe, especially its ability to integrate with our systems and provide real-time compliance evidence. By the end of the audit, he said it was the best compliance tool he’d ever seen and planned to recommend it to his clients.

If that wasn’t enough, their support team is fantastic. Our Customer Success Manager, Brandon, is super responsive, often replying to emails within the hour. If he can’t address something immediately, he loops in his team, and they follow up just as quickly.

We couldn’t be happier with Secureframe and are excited to expand its usage as our business scales and we explore support for more frameworks. Review collected by and hosted on G2.com.

What do you dislike about Secureframe?

While Secureframe covers all of our major cloud and SaaS providers, I do wish there were a few more integration options available, and in some cases, I’d like the existing integrations to be a bit more robust. Review collected by and hosted on G2.com.

What problems is Secureframe solving and how is that benefiting you?

Secureframe is helping us streamline and automate our ISO 27001 compliance process, significantly reducing manual tasks and simplifying audits. By integrating with our cloud and SaaS platforms, it provides real-time insights into our compliance status, ensures our systems are secure, and makes it easier to demonstrate evidence to auditors. This has not only saved us time and effort but also increased our overall efficiency and confidence in staying compliant. Review collected by and hosted on G2.com.

Secureframe Overview

What is Secureframe?

Secureframe empowers businesses to build trust with customers by simplifying information security and compliance through AI and automation. Thousands of organizations such as AngelList, Nasdaq, Coda, and Remote trust Secureframe to help them obtain and maintain compliance with global information security standards.

Secureframe Details
Product Website
Languages Supported
English
Show LessShow More
Product Description

Secureframe helps companies get enterprise ready by streamlining SOC 2 and ISO 27001 compliance. Secureframe allows companies to get compliant within weeks, rather than months and monitors 40+ services, including AWS, GCP, and Azure.


Seller Details
Company Website
Year Founded
2020
HQ Location
San Francisco, US
Twitter
@secureframe
2,107 Twitter followers
LinkedIn® Page
www.linkedin.com
145 employees on LinkedIn®
Description

Secureframe is the automated compliance platform built by compliance experts. We're transforming how businesses and Service Providers manage security and compliance programs.


BG
Overview Provided by:

Recent Secureframe Reviews

SF
Shalom F.Mid-Market (51-1000 emp.)
4.5 out of 5
"Secureframe as an effective software for compliance and enhanced security"
Secureframe is a very easy to use software with proper onboarding and setup process. It has made the process of automating and streamlining many co...
Verified User
U
Verified UserSmall-Business (50 or fewer emp.)
4.5 out of 5
"Easy to use and legally compliant"
Secureframe allows me to automate compliance related tasks so I save up a lot of time
RM
Rey M.Small-Business (50 or fewer emp.)
4.5 out of 5
"Highly Recommend Secureframe"
Secureframe has assisted my organization by organizing policies and controls for us to easily keep track and update. It simplifies the audit proces...

Secureframe Media

Official Downloads

Answer a few questions to help the Secureframe community
Have you used Secureframe before?
Yes

381 out of 382 Total Reviews for Secureframe

4.7 out of 5
The next elements are filters and will change the displayed results once they are selected.
Search reviews
Popular Mentions
The next elements are radio elements and sort the displayed results by the item selected and will update the results displayed.
Hide FiltersMore Filters
The next elements are filters and will change the displayed results once they are selected.
The next elements are filters and will change the displayed results once they are selected.
381 out of 382 Total Reviews for Secureframe
4.7 out of 5
381 out of 382 Total Reviews for Secureframe
4.7 out of 5

Secureframe Pros and Cons

How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Cons

Overall Review Sentiment for SecureframeQuestion

Time to Implement
<1 day
>12 months
Return on Investment
<6 months
48+ months
Ease of Setup
0 (Difficult)
10 (Easy)
Log In
Want to see more insights from verified reviewers?
Log in to view review sentiment.
G2 reviews are authentic and verified.
SI
Senior Security Analyst
Small-Business(50 or fewer emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
(Original )Information
What do you like best about Secureframe?

We used Secureframe for our SOC2 certification process, and the platform had the capabilities of getting automatic details through its many integrations, thus reducing the need for much of the manual tasks.

Support from the team was also great to ensure that we were given attendtion when needed and helped on doubts.

The platform was easy to use and did not have many requirements in terms of implementation, as it was a quick portal login. Review collected by and hosted on G2.com.

What do you dislike about Secureframe?

There are challanges in terms of available integrations especially when considering that there could be custom appalications and features within that would need more details for certain tests to pass.

While the platform is great for all the tracking and automation, at times there is a necessity of having that full-time support or hand-holding for certain things, which is missing.

Default policies and procedure documents are made available, and there are only minimal changes required for the organization to pass those, while the implementation could be wholly different or nonexistent; there is no feature or checks to ensure that things are followed as described. Review collected by and hosted on G2.com.

What problems is Secureframe solving and how is that benefiting you?

We used SecureFrame to get one of our suborganizations SOC2 certified, and having integrations with AWS and Microsoft helped with the high-level integrations; it did reduce the overall efforts that were needed to gather the evidence.The platform also keeps all the required pieces of information and details in a single place that helps ease the compliance process. However, on the flip side, the categorization of the test into respective departments was a challenge, as there was no indication of what exactly is needed as evidence nor any outlier that could have helped with that information. Review collected by and hosted on G2.com.

Verified User in Computer & Network Security
AC
Small-Business(50 or fewer emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Secureframe?

Secureframe ermöglicht es dem Auditor direkten Zugang zu Secureframe zu geben und sich so eine Menge Arbeit bei der Übermittlung von Informationen/Beweisen zu ersparen.

Für mich war es das erste Mal, mit einer derartigen Software zu arbeiten bzw. bei einem SOC2 Audit mitzuwirken und war positiv überrascht wie leicht es mir viel mich zurechtzufinden.

Wenn ein Problem oder eine Frage aufgetaucht ist, war der Kundenservice immer schnell erreichbar und hatte eine Lösung parat, in der Regel noch am gleichen Tag.

Sehr überzeugt waren wir auch von der Vielzahl an Funktionen die Secureframe bietet (Integrations, Policies, Personnel etc.), so dass wir durch die Nutzung von Secureframe an anderer Stelle sparen konnten. Review collected by and hosted on G2.com.

What do you dislike about Secureframe?

Eigentlich gibt es nicht viel auszusetzen, der Auditor hat uns auf einige Tests hingewiesen die wir aktivieren sollten, auf die Secureframe uns im Vorfeld nicht aufmerksam gemacht hat. Es waren allerdings Kleinigkeiten und hat uns keine wirklichen Probleme mit dem Auditor bereitet, nur einen geringen Mehraufwand um Rückfragen des Auditors zu beantworten. Review collected by and hosted on G2.com.

What problems is Secureframe solving and how is that benefiting you?

Secureframe hilft uns bei der Bestehung von Audits wie z.B. SOC2. Desweiteren haben wir hier unsere Vendor mit Details gelistet, sowie interne Policies auf die unsere Mitarbeiter zugreifen und unterschreiben können. Desweiteren bietet Secureframe einige Quality of Life Features die uns in vielen Bereichen nützlich sind. Review collected by and hosted on G2.com.

AS
Financial Controller
Small-Business(50 or fewer emp.)
Validated Reviewer
Verified Current User
Review source: Organic
What do you like best about Secureframe?

1. The product features a clean UI, making it easy to navigate and understand.

2. The onboarding process was seamless, even as we transitioned from a different product, the onboarding team took care of the transition.

3. Customizable Trust Center, which provides great flexibility to align with our company's branding.

4. Very responsive support team. Review collected by and hosted on G2.com.

What do you dislike about Secureframe?

1. Initially, the homepage had a few bugs, but they were promptly resolved by the support team within 24 hours of being reported. Review collected by and hosted on G2.com.

What problems is Secureframe solving and how is that benefiting you?

Secureframe fully automates the SOC 2 review process. If any security tests fail, they are promptly reported to the assigned security officer for remediation. The Platform is very useful during SOC 2 audits, significantly streamlining and accelerating the audit completion process. Review collected by and hosted on G2.com.

LL
Chief Security Officer
Mid-Market(51-1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Secureframe?

The way it helps me organize my SOC II requirements, tests and processes. Customer support is prompt and very helpful throughout the process Review collected by and hosted on G2.com.

What do you dislike about Secureframe?

Rarely its tough to connect something to the API Review collected by and hosted on G2.com.

What problems is Secureframe solving and how is that benefiting you?

Getting through the process of SOC II type 2 audit is very bureaucratic and frustrating. Secureframe organises the whole process and makes it easier for us and the auditor to get through it effectively. It helps us organise the tests and helps us monitor the compliance with each of the tests. It helps us organise the employees and contractors and get them compliant and security trained. I believe it would be almost next to impossible to organise all these tests and prove that we are compliant if we did the audit without the Secureframe platform Review collected by and hosted on G2.com.

AP
Solutions Consultant
Small-Business(50 or fewer emp.)
Validated Reviewer
Verified Current User
Review source: Organic
What do you like best about Secureframe?

Ease of accessing all features. The UI is also very user friendly. The customer success team is also very supportive and quick to respond Review collected by and hosted on G2.com.

What do you dislike about Secureframe?

The secureframe agent sometimes does not integrate well and shows a few controls as failing which is something needs to be improved Review collected by and hosted on G2.com.

What problems is Secureframe solving and how is that benefiting you?

It is helping us be SOC2 and ISO compliant. It has also made our compliance and auditing easy Review collected by and hosted on G2.com.

DM
Senior Engineering Manager
Mid-Market(51-1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Secureframe?

You get access to people who know how things are typically documented. A lot of these certifications are essentially documentation exercises and if you know how they are typically done, it becomes a lot easier to complete.

Their tools are constantly improving, they introduce process for things that would be manual otherwise and become a central clearing house for all of your compliance artifacts. Review collected by and hosted on G2.com.

What do you dislike about Secureframe?

Their REST api is kind of barebones right now. You can't look up, for example, which employees are out of compliance at any given moment. It basically allows you to C.R.U.D. custom tests and data, but doesn't let you access the builtin stuff. They're always improving, so i'm sure eventually this data will be exposed via their rest api;. Review collected by and hosted on G2.com.

What problems is Secureframe solving and how is that benefiting you?

they allow us to centralize all of the artifacts we need to pass a SOC2 audit and attest to being GDPR compliant. They help introduce process for something that would be exhausting to do manually. They have automation that looks at your environment and makes sure things are setup properly. Review collected by and hosted on G2.com.

SF
Senior Customer Lifecycle Marketing Executive
Mid-Market(51-1000 emp.)
Validated Reviewer
Review source: G2 invite
Incentivized Review
What do you like best about Secureframe?

Secureframe is a very easy to use software with proper onboarding and setup process. It has made the process of automating and streamlining many compliance tasks easily with their AI features. It also provides security to sensitive business data and conducts risk management. Their customer support team is also quite helpful and approachable Review collected by and hosted on G2.com.

What do you dislike about Secureframe?

Has scope for improving the number of integrations and may take some time to understand the homepage. Review collected by and hosted on G2.com.

What problems is Secureframe solving and how is that benefiting you?

Secureframe has helped automate many compliance related tasks and has enabled enhanced security for all sensitive data, which makes it a reliable software. Review collected by and hosted on G2.com.

GB
Solutions Consultant
Mid-Market(51-1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Secureframe?

Any time there is a task that needs to be done, an email is sent out by Secureframe with explicit instructions on how to accomplish it. Whether that be a new employee going through onboarding, annual SOC 2 compliance, or verifying that security policies are up to date, Secureframe ensures that the important tasks are completed in a timely manner. It would be chaos to try and manage all of this another way, and our team breathes easy knowing that we're covered by their software. Review collected by and hosted on G2.com.

What do you dislike about Secureframe?

Our team receives security questionnaires at least weekly from our prospective customers, which can come in a variety of formats (Excel, Word, external site, etc). While there is a questionnaire library feature within Secureframe, it is currently limited to being able to read and fill out Excel spreadsheets. If this were the only way we received questionnaires, it would be perfect. Alas, that's not the world we live in.

Thankfully, the Secureframe success/support team has been receptive to feedback around how this could be improved and have relayed those thoughts to their Product team. Review collected by and hosted on G2.com.

What problems is Secureframe solving and how is that benefiting you?

Secureframe ensures that our team's policy documentation is recorded and kept up to date, and requires that every employee go through annual training on these policies and more. It makes it easy for our HR and IT teams to know who has accomplished the required tasks on time, and can send out personalized reminders to those who have yet to do so.

It also automatically pulls Common Vulnerabilities and Exposures data for our connected integrations, which helps our team prioritize security tasks. Review collected by and hosted on G2.com.

BH
Head of Information Security
Small-Business(50 or fewer emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Secureframe?

User friendliness of the application, small ramp up time to become familiar with the product, automated scanning functionality does not result in a large amount of false positives Review collected by and hosted on G2.com.

What do you dislike about Secureframe?

I would eventually like to see more customization options available for the automated results, as well as future integrations with more products Review collected by and hosted on G2.com.

What problems is Secureframe solving and how is that benefiting you?

Helping us with our audit and compliance reports as well as proactive monitoring for compliance best practices Review collected by and hosted on G2.com.

RM
Technology Manager
Small-Business(50 or fewer emp.)
Validated Reviewer
Verified Current User
Review source: Organic
What do you like best about Secureframe?

Secureframe has assisted my organization by organizing policies and controls for us to easily keep track and update. It simplifies the audit process and quickly identifies any issues. Review collected by and hosted on G2.com.

What do you dislike about Secureframe?

As of right now I cannot think of an issue because it really has been helpful. Review collected by and hosted on G2.com.

What problems is Secureframe solving and how is that benefiting you?

Structuring our policies and easily identifying failing controls. Review collected by and hosted on G2.com.