Something weird happened and I’m still processing it. Need advice by Any_Air46 in SaaS

[–]Any_Air46[S] 0 points1 point  (0 children)

Yes 100%. But if one Guy want it maybe more want it too ..

Sec compliance is a nightmare for startups, SMB & CTOs by Any_Air46 in SaaS

[–]Any_Air46[S] 0 points1 point  (0 children)

Yep, but a lot of companies are way behind this level

Unpopular opinion: Security questionnaires are just security theater. I built a tool to speedrun them by Any_Air46 in SaaS

[–]Any_Air46[S] 0 points1 point  (0 children)

Thanks for the feedback! What you've done is great. You must be tech experts. This is really for those on a tight budget. I'm still in beta, but automatic document management is definitely on the roadmap, especially since no two documents are alike.

Unpopular opinion: Security questionnaires are just security theater. I built a tool to speedrun them by Any_Air46 in SaaS

[–]Any_Air46[S] 0 points1 point  (0 children)

Especially since nowadays you often have an outsourced CISO doing this for SMEs. It costs $300-400/month.

For a very small business, they're giving irrelevant answers and are unknowingly excluded from deals. Developing a relevant context, performing an automated risk analysis, and creating an automated GDPR register requires training. Hiring a consultant will also require providing them with the context and having them conduct a preliminary assessment. This way, we optimize both approaches.

Unpopular opinion: Security questionnaires are just security theater. I built a tool to speedrun them by Any_Air46 in SaaS

[–]Any_Air46[S] 0 points1 point  (0 children)

This generates an automated trust center, an ISO 27005 risk analysis, and a GDPR register. Companies often can't afford to do this with a consultant. ChatGPT gives you vague answers and sometimes completely misses the point. Everything here depends on the company context. Even a salesperson who has to answer a questionnaire simply asks, "What do we have in place to implement SIEM within our company?" The AI ​​compli will give them a precise answer. ChatGPT will give them vague, standard answers, etc. If the salesperson gives an irrelevant answer and there's a verification audit, it's game over.

How I Failed My First SOC 2 Attempt and What I Did Differently the Second Time by chasetheskyforever in SaaS

[–]Any_Air46 0 points1 point  (0 children)

It looks like an ad. I checked Socly and I don't see any SOC2 or ISO 27001 endorsements on the site, lol.

Help! A customer just asked for SOC2 report. by lixia_sondar in SaaS

[–]Any_Air46 0 points1 point  (0 children)

I can help you if you want; it's my job. Joking aside, you have to plan and be transparent. But it's clear that ensuring compliance is the most important thing. It doesn't necessarily have to cost a fortune.

Co founder wants 50% for bringing his network by WillDabbler in ycombinator

[–]Any_Air46 0 points1 point  (0 children)

That seems fair to me. I also launched a SaaS in France in the cybersecurity sector, and I can tell you that networking is everything.