Scrut bundles key services—like auditing and penetration testing—together with their compliance software, which has made our end-to-end SOC 2 process much easier. Their team provides outstanding customer support and account management, with consistent, knowledgeable points of contact. Compared to Drata, I’m doing significantly less work and getting better results at a much lower cost. The platform includes all the same core functionality and features you'd expect from any of the leading compliance tools (Drata, Vanta, etc.), but with a much more integrated and founder-friendly experience. Review collected by and hosted on G2.com.
There are occasional minor bugs—like filters not working exactly as expected—but nothing critical. Importantly, the team acknowledges these issues quickly and is responsive in fixing them. Compared to the constant churn and lack of support we saw with other vendors, Scrut has been far more reliable and collaborative. Review collected by and hosted on G2.com.
Scrut helped us automate many compliance tasks and organize our evidence collection into one portal. Integrations were easy to connect and had very detailed instructions.
The customer success team is very responsive and experienced. We were able to get all of our questions answered during weekly cadence calls and over email.
On top of that, Scrut easily provided the best value compared to any other GRC tools. We were able to achieve our compliance goals easily and without overpaying. Review collected by and hosted on G2.com.
All of the GRC automation tools will have automated tests, and some of them aren't relevant for us or needed manual clarification. It was easy to add a note or other clarification to those. It's not a huge deal because there isn't any software platform that will perfectly understand every company's exact infrastructure. Review collected by and hosted on G2.com.
We’re a small SaaS startup, and most SOC 2 tools out there felt bloated and overpriced for our stage—especially once you add platform fees, consulting, and audits.
Scrut was a breath of fresh air. It gave us everything we needed in one place, without the bloat. The team was fantastic—responsive, flexible, and truly supportive throughout the process. SOC 2 can be stressful, but they made it manageable with clear guidance and regular check-ins. Review collected by and hosted on G2.com.
There were a couple of times over three months where I couldn’t log in due to scheduled platform updates. It didn’t last long, and the team fixed things quickly each time. While it was a bit inconvenient during busy periods, they were transparent about it and I expect it’ll happen less as the platform matures. Review collected by and hosted on G2.com.
Most useful is the automated reminders on updating the evidence. Furthermore, a lot of controls regarding employees and vendors can be monitored from within Scrut. The dashboard provides a great overview of the status of the different frameworks you as a company have implemented. In our case this is ISO-27001:2022 , SOC2 Type II and GDPR. It also provides automatic scanning of your public cloud solution which covers a big part of the needed controls. We use Scrut Automation in combination with Confluence and Jira to be able to have the most workflow related evidence collected automatically. All in all it saves us lots of time which we can than use to improve our overall ISMS-score. Review collected by and hosted on G2.com.
The software and underlying databasesystem are a little buggy which sometimes results in loss of information. In the end the issues are solved. but this takes longer than needed and SA could definitely improve on that aspect. Review collected by and hosted on G2.com.
We are a SaaS based provider for Human Services and were looking for a vendor to assist us with HIPAA compliance. After looking into several providers and talking to them, we thought Scrut might be the best fit, and they certainly did not disappoint. Scrut excels in automating evidence collection, policy management, and audit workflows. It integrated seamlessly with our tools like Office and Azure. The platform is very responsive, and the customer support is top-notch. Highly recommend them for your regulatory needs. Review collected by and hosted on G2.com.
Can't think of any. The team is very efficient and responsive. Review collected by and hosted on G2.com.
What I like best about scrut automation is its library of templates and all the structured reminders about the pending complaints activities. And, the compliance activities that are due, there are date reminder notifications that make sure that everybody is on track and on point and the entire team is able to monitor each and every deadline each and every activity from the central platform. Review collected by and hosted on G2.com.
Nothing much. Whenever we got stuck, the scrut automation team was always at hand to help with a quick solution and a lot of helpful guidance. Review collected by and hosted on G2.com.
Scrut was essential in helping us achieve ISO 27001 and SOC 2 certifications in record time
Scrut played a critical role in our compliance journey. Their team guided and supported us throughout the entire process, with a hands-on approach, constant availability, and exceptional professionalism.
They clearly know what needs to be done — they defined the entire implementation plan and ensured everything stayed on track. Their platform is excellent: it provides clear visibility into the status of each task, what's completed, and what still needs to be done to reach certification goals.
Thanks to Scrut, we not only met our compliance deadlines, but did so with confidence and clarity every step of the way. Review collected by and hosted on G2.com.
The daily communication could improve, maybe the response time sometimes. Review collected by and hosted on G2.com.
Scrut Automation has been instrumental in helping us achieve ISO 27001 and HIPAA compliance. The platform is thoughtfully designed, making it incredibly easy to track required policies, upload evidence, and monitor progress. It offers seamless integrations with AWS, Azure, GitHub, Office365, and more — which helped automate evidence collection and ensure continuous compliance monitoring. Review collected by and hosted on G2.com.
Linkage of policies , evidences , controls can be little more intuitive. But team will guide you initially on this part. Review collected by and hosted on G2.com.
Scrut is well organised, simple to use and understand platform. It has made being compliant stress free with integration to various systems and facilities to maintain evidences, policies and share the same, with version control. It has a very user friendly interface. Scrut team is always available and responsive apart from being very knowledgeable on the subject and platform and excellent support. Review collected by and hosted on G2.com.
There are areas of improvement on the integration and UX but not something that is a negative. There is always going to be a chance to improve on anything. Review collected by and hosted on G2.com.
One of the features I appreciate most is its seamless cloud vulnerability detection, which provides us with real-time insights into potential security risks. Additionally, the evidence collection process is not just a compliance requirement—it has become an invaluable exercise for us to test and validate our infrastructure. This has given us greater confidence that our security controls are correctly implemented. Scrut also reinforces best security practices, ensuring that we maintain a strong security posture. Review collected by and hosted on G2.com.
At times, there is a delay in syncing changes within Google Workspace (Gsuite), such as newly added employees , So it creates confusion why my employee count is showing less . Review collected by and hosted on G2.com.