Skip to main content
Skip to main content
The Compliance Snapshot is temporarily unavailable while we make improvements. Please check back soon.

Compliance Snapshot · Free

See your control gaps in 30 minutes.

A free, read-only compliance assessment for SA cloud teams. Connect one AWS account and we'll email you a CIS v8.1 + POPIA gap report within one business day.

  • Read-only IAM role — we cannot change anything in your account
  • No tenant, no card, no auto-conversion
  • Data purged 30 days after the report is delivered
  • POPIA-aligned · hosted in AWS Cape Town (af-south-1)

Run a Snapshot

We'll email you within one business day with the next steps and a sample report.

SecureByte never asks for raw cloud credentials on this page. We connect via a read-only IAM role you create in your account — setup steps are in the welcome email. Pick AWS below to paste the role ARN now and skip the round-trip.

We reply within one business day · POPIA-compliant

What happens next

From form-submit to PDF in one business day.

Four steps, no surprises. You can stop at any of them.

  1. 01

    You connect one AWS account, read-only.

    Cross-account IAM role with rotating external id. We document the trust policy here so you can review before adding the role.

  2. 02

    We run a subset of CIS v8.1 + POPIA checks.

    About 20 controls — the ones that matter most in week one. The platform writes nothing back; the role is read-only.

  3. 03

    You receive a PDF report within one business day.

    Pass/fail per control, top five risks ranked, recommended remediations, and the framework mappings for each finding.

  4. 04

    Data is purged after 30 days.

    We do not stand up a tenant or retain customer data from a Snapshot. If you want continuous monitoring, that's the trial.

The report

What we look at, in plain English.

Identity & access

  • CIS 5.1 / 5.2
  • POPIA s.19
  • IAM password policy
  • MFA on root + admins

Network & encryption

  • CIS 3.x / 4.x
  • S3 public-access block
  • EBS / RDS encryption at rest

Logging & monitoring

  • CIS 3.1 (CloudTrail)
  • GuardDuty enabled
  • Log retention ≥ 90 days

FAQ

Five things people ask before clicking submit.

Is this really free?

Yes. We get a sense of what your environment looks like, you get a useful artefact. There is no credit card and no auto-conversion. If you want continuous monitoring after the Snapshot, the next step is a 30-day trial on Starter or Foundation.

What does the IAM role need?

Read-only managed policies (ReadOnlyAccess + SecurityAudit). We never ask for write permissions. The trust policy scopes the role to our AWS account ID + a unique external id we generate per Snapshot.

What if I run on Azure or GCP?

Azure and GCP Snapshots are on the roadmap. Right now we run them manually for paid customers only. Tell us your cloud on the form and we will follow up directly.

How is this different from running Trusted Advisor or Security Hub myself?

Trusted Advisor is AWS‑specific and rule-based; Security Hub is also AWS. The Snapshot is framework-mapped — every finding lands against a specific CIS v8.1, POPIA, or ISO 27001 control, so you can hand the report to your auditor without translation.

Will I be on a sales call?

Only if you ask for one. The Snapshot arrives as a PDF in your inbox; we do not call you unless you reply asking for a walkthrough.