Reviews from AWS customer
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
760 reviews
from
External reviews are not included in the AWS star rating for the product.
Solid Compliance Platform with Great Usability for Auditors
What do you like best about the product?
As an auditor, one of the standout features of Secureframe is how easy it is to navigate and access documentation. The file organization and evidence download process are both intuitive and efficient, which makes our work much smoother—especially when reviewing large volumes of documentation across multiple clients.
The Policy module is another strength. It's straightforward, easy to understand, and makes it clear how policy management ties into the broader compliance program. This is especially helpful for clients who are working toward frameworks like SOC 2 and ISO 27001 for the first time.
The Policy module is another strength. It's straightforward, easy to understand, and makes it clear how policy management ties into the broader compliance program. This is especially helpful for clients who are working toward frameworks like SOC 2 and ISO 27001 for the first time.
What do you dislike about the product?
One improvement I'd like to see is a more robust system for leaving comments and flagging evidence. Right now, it's not always clear how or where to communicate specific feedback within the platform. A more formalized or visible commenting workflow would make collaboration between auditors and clients even more seamless.
What problems is the product solving and how is that benefiting you?
Overall, Secureframe has been a strong platform that simplifies the compliance process for both clients and auditors.
Secureframe: The best white glove treatment for small startups
What do you like best about the product?
Our rep, Coletta, is the champion that helped us along the way and make our SoC2 happen.
What do you dislike about the product?
Our auditor is an authorized vendor but the auditor did not initially understand secureframe's system and where to find evidence and it took back and forth email chains and more attachments.
Our Rep Coletta stepped in and worked with the vendor to get them up to speed to where to find the evidence they need.
Great work.
Our Rep Coletta stepped in and worked with the vendor to get them up to speed to where to find the evidence they need.
Great work.
What problems is the product solving and how is that benefiting you?
SoC2 type 2 was essential to our customers and it's helping us acquiring and onboarding new customers and ease their security concerns
Essential Compliance Platform That Transformed Our Security Posture
What do you like best about the product?
SecureFrame has been instrumental in transforming our organization's security posture. The platform excels at identifying missing controls and gaps in our security framework that we weren't even aware existed. The risk assessment capabilities are thorough and provide clear, actionable insights that have helped us build a robust security program from the ground up. The automated control mapping and gap analysis features are particularly valuable for organizations looking to achieve compliance with frameworks like SOC 2.
One of the most impactful features has been the employee onboarding management system. SecureFrame has simplified our security training and policy acknowledgment processes significantly. The platform makes it easy to track completion rates, ensure all new hires receive proper security training, and maintain compliance documentation. This has reduced our administrative burden while ensuring we meet all regulatory requirements for employee security awareness.
The policy management functionality is outstanding. SecureFrame provides a centralized repository for all our security policies with version control, approval workflows, and automated distribution to relevant stakeholders. The platform's ability to generate policy templates, track policy acknowledgments, and maintain audit trails has been invaluable. The integration with compliance frameworks ensures our policies align with industry standards and regulatory requirements.
One of the most impactful features has been the employee onboarding management system. SecureFrame has simplified our security training and policy acknowledgment processes significantly. The platform makes it easy to track completion rates, ensure all new hires receive proper security training, and maintain compliance documentation. This has reduced our administrative burden while ensuring we meet all regulatory requirements for employee security awareness.
The policy management functionality is outstanding. SecureFrame provides a centralized repository for all our security policies with version control, approval workflows, and automated distribution to relevant stakeholders. The platform's ability to generate policy templates, track policy acknowledgments, and maintain audit trails has been invaluable. The integration with compliance frameworks ensures our policies align with industry standards and regulatory requirements.
What do you dislike about the product?
The only area where SecureFrame falls short is in web application performance. There are occasional slowdowns and latency issues, particularly when loading large datasets or generating comprehensive reports. While these performance issues don't significantly impact functionality, they can be frustrating during peak usage times. The platform would benefit from optimization to improve response times and overall user experience.
What problems is the product solving and how is that benefiting you?
Before SecureFrame, we were struggling with fragmented security compliance management that was consuming significant time and resources. Our small development team was spending countless hours manually tracking security controls, managing policy versions, and trying to identify compliance gaps without a clear framework. We lacked visibility into our security posture and were constantly worried about missing critical requirements that could impact our business operations or customer trust.
SecureFrame has transformed our approach by providing a centralized, automated platform that automatically identifies missing security controls and compliance gaps, streamlines policy management with version control and approval workflows, and automates employee onboarding with security training tracking. The platform gives us real-time visibility into our compliance status and continuous monitoring instead of reactive compliance management. The business impact has been significant: we've reduced compliance-related administrative time by 60%, improved our security posture through systematic gap identification, and gained confidence in our ability to meet customer security requirements while building a security-first culture that scales with our business growth.
SecureFrame has transformed our approach by providing a centralized, automated platform that automatically identifies missing security controls and compliance gaps, streamlines policy management with version control and approval workflows, and automates employee onboarding with security training tracking. The platform gives us real-time visibility into our compliance status and continuous monitoring instead of reactive compliance management. The business impact has been significant: we've reduced compliance-related administrative time by 60%, improved our security posture through systematic gap identification, and gained confidence in our ability to meet customer security requirements while building a security-first culture that scales with our business growth.
SecureFrame has been a trusted partner in our SOC 2 journey
What do you like best about the product?
Secureframe has been instrumental in helping us organize and stay on top of our SOC 2 compliance. Their integrations with major technologies give me visibility into actions across our development teams, which means I can quickly spot anything that could put our SOC initiative at risk. This level of automation and oversight has taken a lot of the manual effort out of compliance and made the process much smoother.
What do you dislike about the product?
Honestly, there isn’t much to dislike. The customer success team has been responsive and helpful whenever we’ve had questions. Any challenges we faced were more about our own internal prioritization than Secureframe itself.
What problems is the product solving and how is that benefiting you?
We needed to obtain the certifications—specifically SOC 2—that would allow our software to be sold into larger Enterprises. That required a structured, reliable way to stay compliant and audit-ready.
Successfully passed SOC2-type II audit without exceptions
What do you like best about the product?
SOC2, HIPAA, etc. require keeping track of many company activities. Secureframe acts as an effective checklist of those activities and lets you set time frames within which to get alerted to begin working on a certain activity. It is effective in reminding us to perform recurring activities such as vulnerability scans, policy trainings, and acceptance. Policies provided by Secureframe have been accepted by prospective client companies as sufficiently strong policies to proceed to work with us.
Whenever I need a meeting (e.g., ahead of an audit) or if I just have questions they are always willing to jump on a call and review my evidence, make suggestions, and discuss new features.
Whenever I need a meeting (e.g., ahead of an audit) or if I just have questions they are always willing to jump on a call and review my evidence, make suggestions, and discuss new features.
What do you dislike about the product?
The weekly email reports don't always contain relevant information.
What problems is the product solving and how is that benefiting you?
Keeping track of the long list of activities required to successfully complete security audits.
Compliance Support that Makes Sense
What do you like best about the product?
Secureframe is the first platform that seems to have everything pulled together properly; no BS, no extraneous difficult sales processes, just get up and go. Onboarding is easy, needed no training. For a smaller organization, SecureFrame levels the playing field to demonstrate your competence at compliance initiatives when you don't have entire departments like the big guys. It's scoring system helps you see gaps, and then helps with remediation saving a mountain of time and avoid mistakes reviewing your evidence.
Their customer support is top notch!
Its a no brainer to go with SecureFrame.
Their customer support is top notch!
Its a no brainer to go with SecureFrame.
What do you dislike about the product?
Their slightly different approach just needed me to mentally walk away from how we did things in every other system. It was a good thing, just a surprise, but now it makes sense!
What problems is the product solving and how is that benefiting you?
We exist in a space where not just FEDRAMP covers us, we have multiple compliance initiatives to align with and be ready at any time for audit. It also allowed us to drop some other procucts and get under one roof, which I like.
Smooth and Simple Compliance Training
What do you like best about the product?
lear interface, easy navigation, and efficient training process.
What do you dislike about the product?
None so far – everything worked as expected.
What problems is the product solving and how is that benefiting you?
Secureframe made the compliance training process really straightforward. The platform was easy to navigate, and I could complete the training quickly without any confusion. It’s well-organized and user-friendly, which saved me time and effort. Overall, a very smooth experience
Compliance Automation & Monitoring
What do you like best about the product?
The automation and test lists make it clear what needs to be done to achieve compliance.
The breadth of features means it handles most of what you need within the platform.
The ongoing monitoring makes staying compliant easy.
The support and success staff are friendly and helpful.
The breadth of features means it handles most of what you need within the platform.
The ongoing monitoring makes staying compliant easy.
The support and success staff are friendly and helpful.
What do you dislike about the product?
Some features, like the Trust Center, are much more expensive than they need to be.
Refreshing a test after making changes is slow, which can be frustrating when trying to iteratively solve an issue.
Some tests are of questionable benefit, feels like checking boxes rather than improving security and compliance.
Refreshing a test after making changes is slow, which can be frustrating when trying to iteratively solve an issue.
Some tests are of questionable benefit, feels like checking boxes rather than improving security and compliance.
What problems is the product solving and how is that benefiting you?
SOC 2
Love the product and the team
What do you like best about the product?
Been using it for more than a year, one of our favorite tools we use. Simple, well priced, team is responsive and know their stuff. Highly recommend.
What do you dislike about the product?
Working with auditors can be more streamlined but it's good enough for us currently
What problems is the product solving and how is that benefiting you?
Getting security frameworks implemented and audited easily
Making the daunting task of SOC2 and ISO27001 certification clearly obtainable.
What do you like best about the product?
The Dashboard. I can login daily and very easily see what needs to be addressed and with what urgency. Also the Support team is very proactive and helpful.
What do you dislike about the product?
If you don't employ an MDM, SecureFrame offers a very lightweight app for Windows, OSX and Linux that can monitor your employees computers for compliance with Hard Disk Encryption, Screen Lock Settings, Password Complexity, Anti-malware settings and Firewall settings. This is hugely helpful. Unfortunately though, since this needs to work across multiple operating systems and hardware configurations, it doesn't always work. When it doesn't it can get a bit tedious.
What problems is the product solving and how is that benefiting you?
We use Secureframe specifically to help us manage compliance with SOC2 and ISO27001 frameworks including assisting with obtaining and working with an appropriate auditor.
showing 81 - 90