--- title: Secfix Reviews meta_title: 'Secfix Reviews 2026: Details, Pricing, & Features | G2' meta_description: Filter 114 reviews by the users' company size, role or industry to find out how Secfix works for a business like yours. aggregate_rating: rating_value: 4.8 review_count: 114 scale: '5' date_modified: '2026-10-08' parent_category: name: Governance, Risk & Compliance url: https://www.g2.com/categories/governance-risk-compliance ---

Secfix Reviews & Product Details

Value at a Glance

Averages based on real user reviews.

Time to Implement

3 months

Miguel R.
MR
Miguel R.
Finance Officer
Small-Business (50 or fewer emp.)
"Secfix CISOaaS Made Our ISO 27001 Certification Smooth and Audit-Ready"
4.5/5
What do you like best about Secfix?

Secfix’s CISOaaS was fundamental in helping us achieve our ISO 27001 certification smoothly. Their team’s deep domain knowledge of ISO 27001 turned what could have been an overwhelming compliance process into a clear, structured roadmap.

What stood out most was their hands-on guidance and close support during the actual audit. They weren't just advisors from afar, they were actively with us every step of the way, making sure we were fully prepared and confident. They act as a true extension of your team, providing practical risk management strategies and tailored policies rather than generic templates. Review collected by and hosted on G2.com.

What do you dislike about Secfix?

Nothing significant. Because their team is thorough, the initial onboarding requires strong internal alignment and dedicated attention to get processes running smoothly, but that effort pays off completely once the audit phase begins. Review collected by and hosted on G2.com.

Bekjana G.
BG
Bekjana G.
ISMS Lead
Mid-Market (51-1000 emp.)
"Secfix Made ISO 27001 Certification Feel Structured and Achievable"
4.5/5
What do you like best about Secfix?

What I like most about Secfix is that it gave us a clear, structured path to certification instead of leaving us staring at a blank page. As a first-time ISO 27001 candidate without a dedicated compliance team, having policies, risk management, vendor tracking, and evidence collection all in one platform made the entire process much easier to manage and stay on top of. The project plan kept us moving as well, and it really helped us make steady progress through the framework. On top of that, the ongoing support made a real difference, having someone knowledgeable to guide us through questions and unclear points gave us much more confidence going into the audit. Overall, Secfix made a process that could have felt overwhelming for a small team feel achievable. Review collected by and hosted on G2.com.

What do you dislike about Secfix?

Nothing major to flag right now, we've been on the platform for six months, and their team has stayed on top of our requests the whole time Review collected by and hosted on G2.com.

Angelika B.
AB
Angelika B.
Chief Operating Officer
Small-Business (50 or fewer emp.)
"Secfix Makes Security and Compliance Management Easy and Organized"
5/5
What do you like best about Secfix?

What we like best about Secfix is how easy it makes managing our security and compliance activities. The platform gives us a clear overview of our current status, keeps tasks and documentation well organized, and makes it much easier to stay on top of ongoing requirements. We also appreciate the user-friendly interface and the automation of many otherwise time-consuming processes. Review collected by and hosted on G2.com.

What do you dislike about Secfix?

Some processes could be more intuitive and streamlined, with fewer steps and more flexibility for customization and reporting. Review collected by and hosted on G2.com.

Bernhard K.
BK
Bernhard K.
Tech Lead / Senior Softwareengineer
Small-Business (50 or fewer emp.)
"Clear structure and great support on the way to ISO 27001"
5/5
What do you like best about Secfix?

We achieved our ISO 27001 certification with Secfix, and the experience was very positive. What stood out most was the collaboration with Sehmus and the Secfix team, who always responded quickly and provided hands-on support whenever we had questions. The policy templates were also a great help, giving us a solid foundation and structure for developing our own policies instead of starting from scratch. Secfix always gave us a clear overview of what was still missing: the list of required evidence, the automated checks, the dashboard, and the project management view made it easy to track our progress and stay on top of open tasks. Review collected by and hosted on G2.com.

What do you dislike about Secfix?

There are only a few things I would improve. Currently, there is no way to manage opportunities in an opportunity register, which would be a useful addition to the risk management features. Also, in some places the filtering options are limited, for example when trying to filter for open items or items assigned to yourself. More filters would make it easier to focus on the relevant tasks. Review collected by and hosted on G2.com.

Ruween I.
RI
Ruween I.
Associate Technical Lead, DevSecOps
Mid-Market (51-1000 emp.)
"Great Platfrom and Outstanding SecFix CSM Support That Goes Above and Beyond"
5/5
What do you like best about Secfix?

More than the SecFix application—although it’s fantastic—it’s the support you get from their CSMs that really stands out. I’ve worked with multiple CSMs from SecFix, and they’ve been extremely helpful, consistently going above and beyond to assist us whenever we need them. Coming from someone who works in the customer success space, that’s high praise. Review collected by and hosted on G2.com.

What do you dislike about Secfix?

There’s really nothing to dislike. My experience with SecFix has been consistently positive, and I’ve had no complaints so far. Review collected by and hosted on G2.com.

LS
Leonardo S.
ISMS Lead
Small-Business (50 or fewer emp.)
"Interactive SOA and easy device integration – Guidelines quickly at your fingertips at any time"
4.5/5
What do you like best about Secfix?

Particularly noteworthy is the interactive SOA, where all relevant guidelines and evidence are directly linked and can be found at any time. Added to this is the easy integration of end devices via the Secfix agent and the practical function that allows employees to directly read and confirm company policies. Review collected by and hosted on G2.com.

What do you dislike about Secfix?

The search function within the evidence and guidelines currently only considers English terms – even if the interface is set to German. For example, instead of "Zugriffsanfrage," the English term "Access Request" must be entered, which can be impractical for consistently German-language documents. Additionally, it would be desirable to be able to assign more than three classifications to information assets and link them directly to the risk register – in order to differentiate individual risk levels for different resources. Review collected by and hosted on G2.com.

Gorka A.
GA
Gorka A.
CISO
Small-Business (50 or fewer emp.)
"Secfix Makes Audits Easy with Clear Guidance, Fast Evidence Collection, and Great Support"
5/5
What do you like best about Secfix?

The day-to-day operation of the ISMS (reviews, evidence collection, control monitoring) is genuinely manageable, even for a small team where security isn't anyone's full-time job.

Integrations with the tools we already use pull evidence automatically, which dramatically reduces the manual work around audits.

The platform has evolved a lot over the years — new controls, better UX, more automation — and it has kept pace with how our company and our compliance needs have grown.

Audit time is no longer a fire drill. Everything the auditor needs is already in the system, organised and up to date.

Support and the customer success team are responsive, pragmatic and clearly know the standard inside out. They behave like a partner, not a vendor.

Price could look high for small companies but the it pays off fast on effort reduction. Review collected by and hosted on G2.com.

What do you dislike about Secfix?

One thing I’d flag is that the policy templates are a great starting point, but you still need to sit down and adapt them to your company’s specific needs. Even though the Secfix team is very supportive throughout the process, it does take some effort on your side to tailor everything properly and make sure it fits how your business actually operates. Review collected by and hosted on G2.com.

Response from Jakub Wanat of Secfix

Hi Gorka, thanks for the feedback; it's great to hear that day-to-day ISMS operations feel manageable and that audit time is no longer a fire drill. That's exactly what we're aiming for :)

On the policy templates: fair point, and one we're actively working on. Our product team is building out improvements to make policy creation faster and with less effort on your side. Stay tuned!

Tiran P.
TP
Tiran P.
DevOps
Computer Software
Mid-Market (51-1000 emp.)
"Clearly Organized ISO/SOC2 Verification with an Intuitive UI"
5/5
What do you like best about Secfix?

I like how it clearly organizes everything we need for ISO/SOC2 verifications into separate sections, which makes it easier know the requirements and avoid overlooking any of the required documents. The support they offer is pretty good and the secfix UI is very user-intuitive Review collected by and hosted on G2.com.

What do you dislike about Secfix?

no real cons to talk about, does everything needed as a compliance platform. Review collected by and hosted on G2.com.

Rich B.
RB
Rich B.
Zookeeper
Small-Business (50 or fewer emp.)
"Expert-Led Compliance Made Simple"
5/5
What do you like best about Secfix?

I find the Secfix platform pretty easy to use, making it clear what needs to be done and who needs to do it. The service is excellent; they did a great job migrating us from another provider and continue to support us months later with regular face-to-face meetings to ensure we implement the controls correctly. I also appreciate that Secfix acts as an expert authority on compliance tasks, providing guidance on what needs to be done and how to do it.

I especially use the clear dashboards that tell you, at a glance, where your compliance stands. From there, it's a quick click or two to see exactly what needs to be done to raise your compliance percentage. This can be done overall, or only on one compliance framework - whatever scope you want to look at.

They have added a couple of nice AI features. First, a chatbot to help navigate the app and answer questions about how to do something. The newer AI, that I've only played with, can answer complex questions about your policies. This is especially helpful for answering security questionnaires from customers.

We found the price to be competitive and even a little cheaper than competitors. The clear, easy to use platform and great customer service make this a good investment for us. Review collected by and hosted on G2.com.

What do you dislike about Secfix?

I have had only two complaints about the UX. I suggested fixes for both of these. The first was added as a new minor feature within a week or two. I only suggested the second a few days ago, but my contact at Secfix said it was a great idea and would probably be implemented. Review collected by and hosted on G2.com.

Verified User
G
Verified User
Small-Business (50 or fewer emp.)
"User-Friendly Compliance Management, Outstanding Support"
5/5
What do you like best about Secfix?

I really like the usability of Secfix; it's really easy to use and user-friendly. The customer support is really great too. They're on top of things and answer questions really quickly. I appreciate that it gives me more time to focus on other tasks because compliance stuff runs smoothly in the background. The risk register and tool register are valuable to us because they simplify our daily work and we don't need to spend as much time on those tasks as we used to. Review collected by and hosted on G2.com.

What do you dislike about Secfix?

The only improvement I'd suggest for Secfix is to consider implementing aspects of the AI act. It would be valuable if they could add functionality to track which tools use AI within the tool register. Incorporating more of these policies into the product would be helpful. Review collected by and hosted on G2.com.

Pricing Insights

Averages based on real user reviews.

Time to Implement

3 months

Return on Investment

3 months

Average Discount

12%

Secfix Comparisons
Secfix Features
Usage Tracking
Deferred Revenue
Compliance Monitoring
Policy Enforcement
Customized Vendor Pages
Centralized Vendor Catalog
Questionnaire Templates