Thoropass
ThoropassReviews from AWS customer
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
548 reviews
from
External reviews are not included in the AWS star rating for the product.
Thoropass Simpifies and Streamlines Compliance
What do you like best about the product?
Throughout our three years using Thoropass, we have always felt well supported by the team. Whether it was first learning the ropes as we obtained SOC2 Type I, migrating our primary cloud provider ahead of a SOC2 Type II audit, or facilitating a smooth penetration test, the team was always responsive and helpful. A special shout out to all of our auditors for their attention to detail when clarifying evidence request requirements. On the software side, the platform is organized and feature rich, allowing our team to quickly obtain the status of controls, which frameworks they align with, and delegate tasks. The ability to prematurely associate evidence with a control ahead of an audit is invaluable to staying organized. The built in risk register, vendor review, and access review components of the platform are well designed and powerful time savers.
What do you dislike about the product?
One feature that would help our team but is currently lacking would be the ability to define custom monitors.
What problems is the product solving and how is that benefiting you?
Thoropass streamlines our security audits and penetration tests, which are strict requirements for our customers.
Simple and effective product, great people to help you along the way
What do you like best about the product?
The hands on assistance (customer support) as you progress through the controls for you compliance framework. Pricing is competitive with similar products.
What do you dislike about the product?
No downsides found yet, the level of effort is due to the control, not Thoropass, they make it easy
What problems is the product solving and how is that benefiting you?
We need to be SOC 2 compliant, Thoropass is helping with controls and Audit
Thoropass Software Review: Compliance Simplified
What do you like best about the product?
What I like best about Thoropass is how it simplifies and operationalizes complex compliance processes like SOC 2, ISO 27001, and HIPAA. The platform integrates seamlessly with our cloud infrastructure (AWS), version control systems (like GitHub), and ticketing tools, enabling automated evidence collection and real-time visibility into our audit readiness.
What do you dislike about the product?
While Thoropass is a powerful platform, there are a few areas with room for improvement. The UI can sometimes feel a bit cluttered, especially when navigating large sets of controls or evidence items—this can slow down workflows for engineers who want to move quickly. Additionally, some of the integrations, while helpful, occasionally require manual tweaking or don't capture edge-case scenarios automatically.
What problems is the product solving and how is that benefiting you?
Thoropass is solving the problem of fragmented, manual, and time-consuming compliance processes. Before using Thoropass, tracking audit controls, collecting evidence, and preparing for frameworks like SOC 2 or ISO 27001 required a lot of coordination across teams and systems
Helpful team to guide you through the platform and process
What do you like best about the product?
It's great how Thoropass gives you a dedicated account manager plus connects you with other experts that know the compliance process inside and out. Plus, they connect you with the audit team at the start to help guide where your gaps may be.
What do you dislike about the product?
Still working through the auditing process so nothing specific yet.
What problems is the product solving and how is that benefiting you?
Thoropass has allowed our small team to tackle SOC2 compliance.
Great experience using Thoropass for SOC2 compliance and penetration testing
What do you like best about the product?
The Thoropass platform for SOC2 compliance is quite robust and really helped with planning and tracking progress on SOC2 compliance items. The auditors seemed knowledgeable and were a pleasure to deal with, and Thoropass provides a lot of assistance in understanding the audit process.
Thoropass penetration testing includes free retesting for 90 days which I haven't seen other pen testers offer and which I found quite valuable. Plus having the results available within the same platform (as the SOC2 compliance) was nice.
Thoropass penetration testing includes free retesting for 90 days which I haven't seen other pen testers offer and which I found quite valuable. Plus having the results available within the same platform (as the SOC2 compliance) was nice.
What do you dislike about the product?
Transitioning from our SOC2 type 1 audit to our first type 2 audit with 6 month observation period didn't entirely match up with annually-scheduled compliance items. Strictly speaking our fault entirely, but maybe Thoropass could have provided clearer guidance for these scenarios.
What problems is the product solving and how is that benefiting you?
Achieving SOC2 Type 2 security compliance, which is important to our customers and has also helped us improve our security & privacy posture which mitigates business risks.
Amazing company for Cybersecurity Certification
What do you like best about the product?
Herson specifically has been amazing and has helped us walkthrough alot of what was necessary for SOC2 certification
What do you dislike about the product?
I'm not sure I have anything I would say was negative about our experience.
What problems is the product solving and how is that benefiting you?
Helping us get Soc2 certified
Great SoC 2 type 1 experience
What do you like best about the product?
They helped us understand the entire process while working with each group.
What do you dislike about the product?
Some of the items were not very clear about what was required and in-scope.
What problems is the product solving and how is that benefiting you?
It was helping to get our soc2 type 1 and 2.
A High Level of Support and Education
What do you like best about the product?
The Thoropass platform exceeds the standard of user friendliness. The resources and checklist make your tasks throughout the year visible, accessible and obtainable. Our bi-weekly meeting with Jade gives the highest level of customer support to an already great platform. Thoropass has integrated into our work flow with ease and influence.
What do you dislike about the product?
I can't think of anything; every question I have ever had has been answered.
What problems is the product solving and how is that benefiting you?
Thoropass is there to help us maintain our SOC2 compliance by providing a platform to manage all of our policies, manuals and security evidence. As a result, our company stays aware and up to date of technology upgrades and security risk. This provides us with successful security compliance audits and certified results available to our customers.
Thoropass and SOC2 process
What do you like best about the product?
When I was first tasked with completing our initial SOC2 audit, I have to admit I was intimidated since I had never done anything of the sort. Thoropass assured me from the beginning they would be there every step of the way and THEY WERE! When the next year came around, we were assigned a new rep, Jade. From the jump she was extremely resourceful, friendly, professional and CONSTANT. Jade has assisted with training and compliance and has been a very import resource for our company. Our check-in meetings are educational and we always leave with either learning something new, or given a "heads up" on things we may have missed. I know if we have a question, it's one email and we will get a response. Thank you Jade for everything you have done and continue to do for us! We are alerted via email to login to complete upcoming tasks, which is at least monthly, which is helpful to have the extra reminders. The integration with our controls is resourceful and the entire implementation was doable. The first year was hard because we didn't know what to expect but we couldn't manage our SOC2 certification without Thoropass.
What do you dislike about the product?
I can't think of anything I dislike. The application is very well put together and the task tracking is great. Once you're trained, it's very easy to use.
What problems is the product solving and how is that benefiting you?
We are now able to provide annual SOC2 certification reports to our customers and vendors, while keeping us compliant and safe.
Gets you and keeps you organized
What do you like best about the product?
Steps to get HIPPA compliant are complete, easy to follow and you have lots of support throughout the process.
What do you dislike about the product?
There is nothing I dislike about Thoropass
What problems is the product solving and how is that benefiting you?
I run a medical practice so getting HIPPA compliant and staying that way is important to me. Previous companies we used would come once a year and give us a talk on how to be HIPPA compliant then leave. There was really no specifics or follow up that what they suggested we do, was really happening. Thoropass has a well organized system to make sure you are truly HIPPA compliant and keep you that way
showing 41 - 50