Scrut Automation
Email we did on 1st Sept -> they didnt do it themselves
Hi Piyush,
Following up on our discussion last week regarding our SOC 2 audit journey, as we are in the process of finalizing our vendor for this engagement, it would be very helpful if you could share the details we discussed over the call, along with any supporting documentation. Specifically, we would like to request information on the following:
- Pricing structure and renewal terms
- Certifications and frameworks covered under your offering
- Proposed timeline for the SOC 2 journey
- Integration capabilities with tools and the manual work involved
- Support model (scope and availability)
- Engagement letter / SOC 2 in-progress certificate or documentation
- Sales brochure, pitch decks, or other collateral
Additionally, please share any other relevant details that you believe would help us make an informed decision.
We’re keen on moving forward soon, and having this information will greatly help in our evaluation. Looking forward to your response.
their response on 9th sept 2025
Hey Jay,
Thank you for connecting with me over our call and I apologies for the delay in sharing the delay; i was caught up with some personal exigencies.
We understand that Bynry.ai is planning to comply with SOC 2 Type 2 and is looking to automate and streamline your infosec efforts, and that’s exactly where Scrut comes in.
Here’s how we partner with you throughout the compliance journey:
What Scrut Offers:
- Unified GRC Platform – Automate cloud security checks, evidence collection, policy management, vendor risk, employee training, and more, all from a single dashboard.
- Virtual CISO Support – Our in-house infosec experts act as your extended compliance team, guiding you through every step: from initial gap analysis to final audit and certification.
- Extensive Coverage – Beyond SOC 2, we support CIS Benchmarks and 150+ cloud controls.
Our Compliance Journey Together – Step-by-Step:
- Scope Definition – Identify the boundaries of your ISMS, business units, functions, assets, and tech stack that will fall under the scope of compliance.
- Gap Analysis – A comprehensive review of your existing policies, controls, and processes to identify what’s in place and what’s missing as per SOC 2 requirements.
- Risk Assessment – Evaluate potential security risks, threats, and vulnerabilities related to your data and systems, along with their likelihood and impact.
- Risk Treatment Plan – Collaboratively build a strategy to mitigate, transfer, or accept risks, and define the controls you’ll implement.
- Policy & Documentation Development – Create a complete set of SOC-compliant policies, procedures, and records, all tailored to your business needs.
- Implementation & Enablement – Deploy the required technical and organizational controls, onboard your team, deliver security awareness training, and automate evidence collection.
- Internal Audit – Conduct a detailed audit to ensure readiness for certification, uncover gaps, and make final improvements.
- Management Review – Evaluate audit results, incidents, KPIs, and controls’ performance with your leadership team to ensure continuous improvement.
- External Audit Support – We coordinate with an accredited certification body, manage documentation, and provide on-call support during the audit process.
- Certification & Beyond – Once certified, we help maintain your compliance posture with ongoing monitoring, alerts, automated evidence collection/maintenance, and regular quarterly internal audits.
For Your Due Diligence:
- Customer Testimonials – Website and G2 Crowd.
- Case Studies & Success Stories – Here
- Product Demo Video – Here
- Scrut's Trust Vault for compliance – Here
- Company Brochure & Resources – Attached
- Proposal with Timelines & Commercials – Attached
Let me know once you have a chance to review the proposal internally, and I’ll be happy to answer any questions or set up a follow-up discussion.
Alternatively, feel free to book time directly via my calendar link to discuss this further.
Looking forward to working with you on this journey :)
Best Regards
Document we need to check over email for now.
No Comments