Design a security program that builds trust, scales with your business, mitigates risk, and empowers your team to work efficiently.
Cybersecurity is evolving — Strike Graph is leading the way.
Check out our newest resources.
Find answers to all your questions about security, compliance, and certification.
Find out why Strike Graph is the right choice for your organization. What can you expect?
Find out why Strike Graph is the right choice for your organization. What can you expect?
Bennett/Porter & Associates is a technology company specializing in Managed IT Services, ERP solutions, including Sage 100, and other platforms. With a privately managed cloud infrastructure and a growing client base, they faced new demands from their software vendors—mainly, the requirement to obtain a SOC 2 certification in order to continue hosting client environments.
The responsibility for compliance fell on a small but experienced team: Dionne Allison, Manager of the Technology Services Team; Tom Smith, Senior Systems Administrator; and Brandon Smith, Senior Network Administrator and Cloud Architect. Each of them played a hands-on technical role in maintaining infrastructure and supporting clients, which meant the effort to become SOC 2 compliant had to fit into an already demanding schedule.
“We’re a small company, but we have a large and diverse client base,” said Dionne. “Getting SOC 2 certified wasn’t just a best practice—it became a requirement from one of our key partners. That pushed us to find a solution that could work for our unique infrastructure and limited bandwidth.”
Before Strike Graph, the team evaluated traditional consulting and audit prep firms. Most options either lacked the flexibility to accommodate their private cloud model or came at a price tag that simply wasn’t viable for a small business.
“We were quoted $70,000 to $80,000 per year,” Brandon shared. “That was just to get ready for SOC 2—not including the audit. It was shocking.”
Tom added, “We didn’t have prior experience with SOC 2 or internal audit frameworks. A lot of vendors expected us to already have foundational pieces in place, which we didn’t. We weren’t even sure where to start.”
Most of the early options they considered were expensive, consultant-heavy, or overly prescriptive. What they needed was an adaptable platform that could fit around their cloud architecture—and a team that could meet them where they were.
When they discovered Strike Graph, the team said “It felt like one of those things that was too good to be true.” Dionne said, “But as soon as we saw the platform and met with the team, we realized this was exactly what we needed.”
Strike Graph’s platform allowed Bennett/Porter to build their SOC 2 program from the ground up, with tailored support and tools built for self-service without sacrificing sophistication:
After less than a year of working with Strike Graph, Bennett/Porter successfully completed their SOC 2 Type 2 audit —starting from zero and finishing with a fully documented, automated, and organized compliance program.
With SOC 2 Type 2 successfully behind them, the Bennett/Porter team is now focused on continuous compliance. They plan to maintain their SOC 2 report annually and may consider expanding into additional SOC 2 modules or even ISO 27001 down the line.
“We were warned it would be brutal doing SOC 2 Type 2 in one year from scratch—and they were right,” Tom said with a laugh. “But having all of our controls, documentation, and automation in place means future audits will be so much smoother.”
As for how the platform influenced their broader operations, Dionne noted: “It’s changed the way we do things. We’re building new processes around compliance—before we even bring someone on, we’re thinking about how to meet those requirements.”
Key takeaways
Strike Graph’s pre-audit security packet not only streamlined and simplified our SOC 2 compliance efforts, but it even helped us earn the confidence of a valued customer.
Chief AI Officer, Foundation AI
Strike Graph offers an easy, flexible security compliance solution that scales efficiently with your business needs — from SOC 2 to ISO 27001 to GDPR and beyond.
© 2025 Strike Graph, Inc. All Rights Reserved • Privacy Policy • Terms of Service • EU AI Act
Fill out a simple form and our team will be in touch.
Experience a live customized demo, get answers to your specific questions , and find out why Strike Graph is the right choice for your organization.
What to expect:
We look forward to helping you with your compliance needs!
Fill out a simple form and our team will be in touch.
Experience a live customized demo, get answers to your specific questions , and find out why Strike Graph is the right choice for your organization.
What to expect:
We look forward to helping you with your compliance needs!