Summary:
Secureframe launches Audit Module for end-to-end management
Why It Matters:
The platform now handles the entire audit lifecycle in one place. This reduces the need for external tools or email chains when working with auditors.
What Changed:
- Added an Audit Module to manage assessments, invite auditors, and assign tasks to internal teams.
- Introduced "Activity Completion Date" for evidence to show exactly when work happened versus when it was uploaded.
- Launched machine-readable JSON exports for FedRAMP 20x to speed up federal assessments.
- Added a "Updated Resource" workflow to notify partners when security documents are changed in the Trust Center.
- Created automated email alerts for test status changes (daily, weekly, or bi-weekly).
- Expanded Gap Assessments to support every compliance framework in the platform.
- Added new integrations for Snowflake, Freshservice, and several vulnerability scanners like Snyk and Wiz.
- Released support for the EU AI Act and GovRAMP Core frameworks.