From compliance automation through audit, the Thoropass compliance delivery platform helps you get and stay compliant.
Modern audits delivered by expert auditors
Maintain compliance with real-time monitoring and alerts
Identify vulnerabilities with CREST-accredited pentest experts
Leverage AI for smarter compliance solutions
Streamline audits and improve accuracy with evidence automation
Simplify user reviews to enhance security
Automate responses to security questionnaires
Track and mitigate security risks in one place
Seamlessly connect your tools for streamlined compliance
Audits done the modern way. Leverage AI-powered compliance solutions with expert guidance for seamless, scalable audits.
From controls to audit, rapidly achieve infosec compliance with a single vendor
Manage your risk and streamline compliance
Meet your auditor on day 1 and eliminate any surprises
Discover proven compliance outcomes in the words of our customers.
Catch up on the latest industry trends and expert insights
Watch the latest webinar or meet us in person
Expert-curated resources for your compliance journey
A "true crime" styled podcast for anyone in the compliance industry
Actionable tools for your compliance journey
Implement audit-ready compliance solutions for friction-free infosec compliance outcomes.
Go beyond readiness with unmatched expertise
Stay updated with the latest Thoropass news and insights
Join the team that's reimagining compliance
Let's make compliance easier—together
We're committed to unbiased audits and superior service
Customer Stories / Cigo Tracker
Cigo Tracker was conceived to solve a problem familiar to every online shopper: Not knowing when their order is being delivered. Often, transport companies have little insight once their drivers leave the warehouse. Cigo Tracker makes last-mile logistics more efficient, reliable, and transparent with its delivery management software.
After six years in business, Cigo Tracker sought to expand to enterprise companies but hit a snag: Larger customers required SOC 2 compliance.
Compliance was a new challenge for Cyrille Delavenne, CTO. He wore multiple hats on his small, growing team and prioritized revenue-generating activities. Compliance hadn’t been front and center–but he knew that had to change.
Cyrille researched auditors and compliance vendors online. He was looking for a supportive, guiding hand to help his team achieve SOC 2 certification at a reasonable price. At first, he had several negative experiences meeting with providers. According to Cyrille, “I just felt like it was going to be this extremely complicated thing working with people that only use ‘audit speak.’ It’s like a foreign language to me.” His perception changed when he found Thoropass.
In addition to the positive relationships, Cyrille chose Thoropass because of its all-in-one experience for audit preparation: Expert guidance, in-house auditors, and an easy-to-use platform to streamline the process.
His favorite feature was Thoropass’s policy templates. Cyrille estimated a 90% time savings versus writing policies from scratch.
Cigo Tracker needed to conduct penetration testing on its web application in order to fulfill compliance requirements and improve its security posture. Cyrille was considering renewing with pen testers he had used in the past, but when he learned Thoropass had its own in-house pen testing team at a competitive rate, he decided to give them a try.
He was pleasantly surprised. Cyrille’s previous pen testers identified problems without telling him how to reproduce or fix them.
“Usually you waste a lot of time going back and forth because the person isn’t telling you how to execute the attack that they were doing,” explains Cyrille.
As part of their successful SOC 2 audit, the Cigo Tracker team resolved several major vulnerabilities and developed their security policies. Thoropass helped them save valuable time in the process. “I think 90% of time saved writing policies is an understatement,” says Cyrille. With SOC 2 certification, Cigo Tracker has unlocked enterprise-level business opportunities and built confidence in its security posture.
Now, Cyrille and the Cigo Tracker team can sleep soundly. ”I think we just sleep better at night knowing that we are now doing some critical things that we should have been doing from the start.”
Cigo Tracker plans to use Thoropass’ continuous compliance services to keep its SOC 2 certification up to date. The company has adopted best practices such as two-factor authentication, background checks, managing access to resources, and yearly penetration tests. Thoropass made the process easy to understand and a lot less intimidating than they originally thought.
Cyrille’s advice to other startups? Get compliant early.
Talk with one of our experts to build your custom path to compliance and take advantage of Thoropass’s thoughtful automation, expert guidance, and security audit experience.
SOC 2
ISO 27001, SOC 2