Pyne logocolour
quote icon

“For our customers using our onboarding agents, security is super important since we’re dealing with their user data. AssuranceLab helped us achieve the ISO certification our customers required easily and fast."

Roman_Pyne_blue
CASE STUDY
Pyne logocolour
Making ISO 27001 compliance a reality for startups

ISO 27001 is no longer something only enterprises can achieve. Read how Pyne, a user onboarding AI agent for SaaS companies, achieved ISO 27001 with the help of AssuranceLab’s modern audit approach. 

INTRODUCTION TO PYNE
Based in Berlin, Germany, Pyne is a B2B SaaS startup dedicated to making software effortless to navigate.

By leveraging AI-driven product demos, Pyne enables users to experience a product’s value earlier, more easily, and at scale—while maintaining a personalized, human touch.

STARTING THE ISO 27001 JOURNEY AS A STARTUP

Driven by client deadlines and the knowledge that ISO 27001 would help Pyne win larger deals, the team started on their ISO 27001 journey.

The initial conversations in early 2024 involved Pyne evaluating the challenges involved with ISO 27001. As a startup and small team, they were conscious of the time investment and capacity restraints. This ultimately led Pyne to pause the process till late 2024. 

The first audit firm Pyne spoke to was “quite traditional in their audit process. They needed people present in the office. Which required extra travel costs, as they were based in Munich and we are in Berlin. As a startup, we wondered if this was justifiable and started researching auditors in Berlin.” Roman Geugelin, Founder at Pyne. 

Pyne was introduced to AssuranceLab through Secfix Pyne’s compliance automation platform. What stood out from the beginning was AssuranceLab's modern and fully remote approach to audits.

“We were surprised that the process would be fully remote, which is super different from what is usually offered. This also reduced some of the stress involved with having in-person audits,” said Roman.

From here, Pyne was onboarded with Pillar and began their ISO 27001 audit.

WORKING THROUGH ISO 27001 WITH A DEADLINE

Initial discussions in late November 2024 clarified that Pyne needed to obtain ISO 27001 certification by the end of January 2025 to meet a client deadline. Internal prioritization was not a concern for the Pyne team. However, as this was their first time going through the process, they lacked clarity on external timelines. While they were fully prepared to contribute all necessary efforts on their side, they required a reliable partner to plan and execute the process effectively.

AssuranceLab rose to this challenge and outlined a timeline from the kick-off to certification, helping reassure Pyne that this was achievable. From here, the kick-off call was held, and the audit process began. 

While time zone challenges were occasionally felt throughout the process, Roman said overall they actually worked in their favor. Pyne was able to upload evidence, have AssuranceLab review it overnight, and then come back the next day to review any queries. This also helped the team plan and prioritize the ISO 27001 audit and other priorities. 

“Overall, it was a good experience and super-fast. The commitment from AssuranceLab made the entire process achievable,” said Roman.

THE BENEFITS OF ACHIEVING ISO 27001

The biggest benefit of achieving ISO 27001 has been setting up the Pyne Trust Centre. This enables the team to have all security certifications in one place, ready to demonstrate their commitment to security at any moment. Roman also stated the time it takes when filling out security questionnaires and how having ISO 27001 certification will help speed up this process. 

Now that Pyne has their ISO 27001 certification, they are working towards continuous compliance and continuing to grow and evolve their product and business. 

If you would like to experience the AssuranceLab difference yourself, contact our team: info@assurancelab.com.au 

alab-soc2-image
GET IN CONTACT

Get started your way

We’re ready when you are
If you’re ready for a no-obligation discussion on your compliance needs and goals, our friendly team will be happy to take your call.