44 ms·
Hi, I'm one of the founders of Secureframe.com. At Secureframe we help customers streamline their SOC 2, ISO 27001, HIPAA, and PCI compliance. And much more! I
by shravvmehtaa 5y ago
Hi, I'm one of the founders of Secureframe.com.
At Secureframe we help customers streamline their SOC 2, ISO 27001, HIPAA, and PCI compliance. And much more! If you are selling to customers in Europe or Asia, ISO 27001 is quite commonly requested. In the US, SOC 2 tends to be more common.
When it comes to the process, an ISO 27001 certification has two stages and includes an annual renewal.
- Stage 1: Evaluates the right documentation and controls in place in order to progress to Stage 2.
- Stage 2: Evaluates the evidence to prove your controls and ISMS are effective, and that they meet the ISO 27001 requirements. Passing Stage 2 results in an ISO 27001 certification.
Stage 1 can be completed pretty quickly, but Stage 2 can take a bit more time to evaluate the evidence for. It can be done in a few weeks with a tool like Secureframe. It can cost < $10k for smaller companies. It often can make or break deals, so customers tend to get certified earlier rather than later.
Secureframe is the only security & compliance platform that has an ISO 27001 certification of its own. We save customers dozens of hours by automatically generating key documents like your Statement of Applicability. These can be incredibly time consuming and complex when you try to do it yourself.
Happy to chat more! shrav[at]secureframe.com