FusionAuth has had a SOC2 Type 2 certification since 2021 and has been using automation tools to manage the process. The company, being an engineering firm, values automation and was excited to use these new tools. However, the early years were tumultuous due to the new industry landscape. The company used Vanta initially but found it had fundamental architecture issues that caused high levels of pain. They then switched to A-LIGN's ASCEND but eventually moved on to K-Intent (now TrustCloud) after finding it a dramatic improvement over ASCEND. In 2022, FusionAuth decided to perform a full vendor analysis each year to ensure they were using the best tool available. As part of this process, they built a decision matrix with features and integrations that mattered to them and shared it publicly for others to see. This year, they evaluated five vendors including TrustCloud, Vanta, Secureframe, Trustero, Drata, Sprinto, and chose Secureframe due to its high usability, solid customer portal, and integrations meeting their security requirements.