Changelog

Follow up on the latest improvements and updates.

RSS

We’ve made it easier to manage policies, automated checks, and vendors with these updates:
Assign Owners to Policies:
You can now select an admin as the owner of a policy for better accountability.Assign owners
Filters for Automated Checks:
Quickly focus on checks assigned to you or those needing attention with our new filters.Automated checks filter
Vendors Page Filter:
Easily identify vendors that require attention and address them faster.Vendors with filters
We’re excited to introduce major updates in our latest release! 🎉
🔹 New Frameworks Added:
You can now access DORA, SOC 2, ISO 27018, ISO 27017, and ISO 27701 in Secfix!complaince frameworks
Each of the new frameworks comes with:
  • New manual evidence and automated checks
  • Health score
  • Compliance reports
  • Policies and templates
  • List of controls
  • Control mapping for risks
  • Framework in the Trust Center.
🔹
Customizable Manual Evidence Recurrence:
You can now customize how often manual evidence needs to be renewed—set it to Annually, Quarterly, Monthly, or Never.Recurrence
This week, we’ve introduced several updates to improve usability. From simplifying vendor and policy management to enhancing performance and reporting, here’s what’s new:
Assign vendor owners directly:
You can now assign or edit vendor owners directly from the vendor table for quicker management. Attach resources to frameworks
Policy status added:
A new status column in the policies table helps you quickly identify policies that need attention.
Coming soon:
the ability to assign owners to policies directly from this table.Attach resources to frameworks
Deactivated checks in compliance reports:
Deactivated automated checks now appear in the compliance report, along with deactivation reasons, ensuring all audit-relevant evidence is in one place.
Faster dashboard performance:
We’ve introduced caching to speed up the dashboard loading time for a smoother experience.
Attach resources to frameworks
We’re excited to share the latest updates to
Automated Checks
! Here’s what’s new:
Daily Check Refreshes:
Non-cloud checks now refresh every day, and you can easily see the exact time of the last refresh. No more waiting around! We're also working on enabling daily refreshes for cloud checks, so stay tuned for even more updates!
Assign Owners to Checks:
You can now assign automated checks to specific team members.
Deactivate Checks with Context:
You can now assign team members as owners of automated checks, making it clear who is responsible for reviewing and resolving them.
Cleaner and More Focused Views:
We’ve polished the table and side panel for automated checks to make them more organized and easier to navigate.
Better Remediation Guides:
Remediation guides now open in a new tab with improved formatting to help you address failing resources quickly and easily.
Manual evidence
We’ve recently introduced some exciting updates to 
Manual Evidence
 to streamline your compliance process:
Enhanced Descriptions:
 Each task now includes a detailed description, hints, applicability terms, examples, and template links (if available).
New Manual Evidence:
 We added new tasks for KPI Objectives, Threat Intelligence, DLP System Implementation, Web Filtering, Cloud Exit Strategy, and Physical Security Controls.
Improved Document Accessibility:
 All files are now easily accessible, especially for M365 users. The NC Tracker, DPIA, and DPA templates have been embedded directly into their respective manual evidence tasks.
Have feedback? Add it to our public roadmap and help us create a better platform.
We’ve rolled out two exciting updates to help you stay on top of compliance:
  1. Security reports page is now Compliance reports:
    We’ve redesigned the compliance reports page to make it easier for you to track your progress for purchased frameworks and explore other frameworks we support. While the page has been updated, the reports themselves remain the same for now, with improvements planned for the future.Compliance reports
  1. Framework Guides:
    Want to learn more about compliance frameworks? Check out our new Secfix guides. Learn more
1. NIS 2 Framework is now available on Secfix!
: Review your NIS 2 health score on your dashboard and access the detailed NIS 2 compliance report.
NIS 2
2. TISAX Health score and compliance reports
: Review your TISAX health score on your dashboard and access the detailed TISAX compliance reports.
TISAX healthscore and security report
3. Trust Center: Attach resources to compliance frameworks
: You can now upload or link a resource, such as a certification, directly to a compliance framework in the Trust Center. It will appear alongside the. compliance framework and also be accessible in the resources section.
Attach resources to frameworks.
4. Azure Connection: Simplified Setup Flow
: We’ve redesigned the Azure connection steps to make the process smoother and more intuitive. With clearer instructions and a more user-friendly flow, connecting your Azure account is now easier than ever.
Azure connection
GCP connection
1. GCP Connection: Simplified Setup Flow
We’ve redesigned the GCP connection steps to make the process smoother and more intuitive. With clearer instructions and a more user-friendly flow, connecting your GCP account is now easier than ever.
Link resources
2. Trust Center: Add Link Resources
You can now attach links as resources in the Trust Center, alongside documents.
302650961b4b419941237c1eebd147a7
3. Mark automated task as "Not Applicable"
You can now mark automated tasks as "Not Applicable." Once marked, these tasks will be hidden from your main view and will not appear in your security report. However, you can still view them by applying the "Not Applicable" filter. If needed, you can restore them to the main list by switching their status to "Mark as Applicable."
Your customers and prospects can now view your Trust Center seamlessly on any device. Whether they're on a phone, tablet, or desktop, the experience is smooth and responsive.
GDPR healthscore
You can dive in right now and start creating and publishing your own Trust Center. Check out how our co-founder Grigory customizes the Trust Center for Secfix in under 5 minutes!
With the Secfix Trust Center, you can upload your certificates, policies, and other resources, make them public or restricted, customize most of the content, colors, and logos, add subprocessors with automated suggestions, and add controls applicable to your company within seconds. And as a cherry on top – you can receive access requests for sensitive documents like pentest reports from your prospects.
We've also created a self-starter guide for you: Introduction to the Trust Center.
If you'd like some help getting started or want assistance from our designers, feel free to book a quick chat with us through this Calendly link.
Load More