Customer Stories / Tellescope
Tellescope builds upon HIPAA compliance with SOC 2 and wins its biggest customer to date


CHALLENGE
Tellescope’s free, self-serve compliance solution didn’t offer much-needed support
A few years into the business, Derek Strauss, COO & Co-Founder of Tellescope, needed to raise the bar to meet prospective customers’ security standards. The large healthcare organizations they were targeting required not just HIPAA, but SOC 2 compliance as well.
At first, Derek and his team tried to meet the standards with a free self-serve compliance solution that relied heavily on the company to manage its own compliance process.
We were using a free vendor that you could use to get started with the SOC 2 process. Since their product is self-serve, we didn’t really have any guidance.
Initially, we used the free platform to save money, but the amount of time we were spending on it wasn’t worth it.
Derek Strauss
COO & Co-Founder
Tellescope
Derek realized they needed outside expertise to get the job done efficiently and correctly. They explored a few well-known vendors in the space, but those solutions only offered the prep work and not an in-house auditor—Tellescope would still have to find a third-party auditor for their audit that might not’ve been as familiar with the software they were using.
When Derek met Thoropass representatives at an event, he learned there was a better way.
SOLUTION
Partner with Thoropass to quarterback the audit process
Derek chose Thoropass to help Tellescope achieve its SOC 2 Type 1 audit. The deciding factor was the comprehensive nature of Thoropass’s integrated model, which marries easy-to-use software with in-house compliance experts and auditors who offer ongoing guidance and checkpoints.
“Thoropass’s pricing, software, and customer success team were everything we needed rather than trying to figure it out ourselves,” said Derek.
From the initial scoping call, Thoropass’s infosec team helped Derek and his technical co-founder, Sebastian Coates, figure out exactly which controls Tellescope needed for their unique business case. A smooth onboarding process and weekly check-ins with their dedicated Customer Support Manager helped Derek and his team through the process with confidence and clarity.
We were really impressed with our CSM’s responsiveness. She was like the quarterback guiding us throughout the process.
The software is great, but the customer success element has been well worth the money. It’s been the best part of working with Thoropass.
Derek Strauss
Tellescope
RESULTS
Meeting their SOC 2 deadline helped them win their biggest customer
The Tellescope team had a contractual deadline to achieve SOC 2 Type 1 compliance in order to secure their biggest customer to date. With Thoropass’s streamlined solution, they started the process in December and completed their audit in February—successfully meeting their customer’s deadline.
Since then, the SOC 2 Type 1 report has offered peace of mind to both Tellescope and its prospective customers. According to Derek, healthcare organizations have had no issues or questions regarding the quality of the audit.
As a next step, Tellescope is now working with the Thoropass team on their SOC 2 Type 2 audit, due to be completed in September.
SOC 2 was always something we wanted to achieve as a business to make sure our security posture was up-to-date, and we were following best practices. The preparation process and the evidence generation made us confident in our posture for our business.
Derek Strauss
Tellescope
Tellescope
Tellescope
Tellescope
Featured
Product
SOC 2,
Industry
HealthTech
Company size
0-10
Location
Cambridge, New York
Related Customer Stories

How CLEARGOALS maintains multi-framework compliance to achieve global expansion
GDPR,
SOC 2,
Unified Compliance Framework,

Elestio seamlessly achieves ISO certification and opens doors to enterprise deals
ISO 27001,
SOC 2,