Secfix
Secfix is a SOC 2 and ISO 27001 automation tool. It describes itself as "ISO27001/NIS2/TISAX Compliance (EU SME)".
Key facts
- Category
- SOC 2 and ISO 27001 automation
- Describes itself as
- ISO27001/NIS2/TISAX Compliance (EU SME)
- Headquarters
- Munich, Bavaria, Germany
- Founded
- 2021
- Pricing
- Contact sales
- Funding
- $17M total; €3.6M seed (Octopus Ventures) + $12M Series A, Feb 2026 (Alstin Capital)
- Website
- secfix.com
- Others in this category
- 22
Identity confirmed
On 2026-09-12 the address above was checked against a primary source and does belong to Secfix. Secfix's LinkedIn page lists secfix.com as its website and gives the headquarters as Salvatorplatz, Munich, Bavaria, with a further UK location. The product is EU-focused ISO 27001, SOC 2, NIS2, DORA and TISAX compliance automation, matching the listed category. The existing record said Berlin; secfix.com does mention both Berlin and Munich offices, but Munich is the headquarters the company publishes itself. Evidence.
Frameworks Secfix claims
Read from https://www.secfix.com/ on 2026-09-12. This records what the vendor states, not a certification and not an assessment.
Claims coverage
SOC 2, ISO 27001, ISO 42001, GDPR, DORA, NIS2
Does not claim
HIPAA, PCI DSS, NIST CSF / 800-53, FedRAMP, CMMC, EU AI Act. That means the page above does not claim these, not that the product cannot handle them. Ask.
Best fit for
European startups, SaaS companies, and SMBs, roughly 20-500 employees, needing ISO 27001, SOC 2, GDPR, or NIS2 to unlock enterprise or regulated customers
What stands out
A named European auditor network including TÜV and Dekra, with first-class support for GDPR and NIS2 alongside SOC 2/ISO 27001, the most EU-regulation-focused vendor in this category
Worth knowing
G2 feedback notes device-visibility glitches, inflexible reporting exports, and limited access-review granularity for larger teams
About SOC 2 and ISO 27001 automation
Gets a company audit-ready and keeps it there. Connects to your stack, collects evidence continuously, and maps it to SOC 2, ISO 27001 and similar frameworks. See all 23 in this category.
Questions
- What does Secfix do?
- Secfix is a SOC 2 and ISO 27001 automation tool. It describes itself as "ISO27001/NIS2/TISAX Compliance (EU SME)". Gets a company audit-ready and keeps it there. Connects to your stack, collects evidence continuously, and maps it to SOC 2, ISO 27001 and similar frameworks.
- Who is Secfix best suited for?
- European startups, SaaS companies, and SMBs, roughly 20-500 employees, needing ISO 27001, SOC 2, GDPR, or NIS2 to unlock enterprise or regulated customers
- What are the alternatives to Secfix?
- This directory lists 22 other SOC 2 and ISO 27001 automation tools, including Comp AI (Bubba AI), ControlMap, Copla.
Alternatives to Secfix
Sources
Category is our editorial call; the vendor's own wording is above. This entry reflects public information and is not an assessment of the product. How this is built · Disclaimer