Testimonials

What our clients say

Real words from real engagements, across regulated industries like healthcare, financial services, government, and SOC 2 and PCI DSS compliance work.

  • SOC 2 went from intimidating to manageable.

    Before we worked with Strondex, SOC 2 felt like a moving target. Jason simplified the entire process. His team performed a thorough assessment, developed clear action plans, helped us implement the controls, and made sure we had the evidence the audit required. They were responsive at every step. We completed our SOC 2 audit successfully and came away with a much stronger understanding of security governance.

    Rebecca

    Divisional Head of Operations · SOC 2 Compliance · 300-person company

  • Our PCI DSS audit was the smoothest we've ever experienced.

    We engaged Strondex to prepare for a PCI DSS assessment and expected guidance. What we received was a true partnership. Jason and his team helped us close longstanding compliance gaps, improve our documentation, validate technical controls, and prepare our staff for the auditor’s questions. By the time the audit arrived, everything was organized and ready. We passed with ease and earned positive feedback from the assessor on the maturity of our security program.

    Michael

    CEO · PCI DSS Compliance · 50-person company

  • They didn't just prepare us for compliance, they strengthened our entire security program.

    In healthcare, every security decision carries real risk. The Strondex team quickly identified the gaps in our environment, built a practical remediation roadmap, and walked us through HIPAA and security best practices without overwhelming our staff. They delivered on every commitment they made. What began as a compliance initiative ended with a markedly stronger security posture across our organization.

    Anna

    Director of IT · Healthcare

  • A strategic partner, not just a consultant.

    From our first meeting, it was clear that Strondex approached security from a business perspective rather than simply checking compliance boxes. They helped us strengthen controls, improve incident preparedness, and reduce organizational risk across the business. They’ve become a strategic partner, not a vendor we call when something breaks.

    Kamden

    Director of Finance · Transportation

  • Security became a business enabler instead of a roadblock.

    We came in expecting security to slow our operations down. Strondex made it the opposite. Their team assessed our environment, found the critical vulnerabilities, and worked alongside our staff to fix them while keeping our operational constraints front and center. Jason kept leadership clear on progress, risks, and priorities throughout. The result was measurable security gains and lasting value, without the operational disruption we'd feared.

    Frank

    Logistics Analyst · Utilities

  • The best cybersecurity consultant we've worked with.

    Strondex is the best cybersecurity consultant we've worked with, and they earned that with limited public-sector resources, not despite them. Jason and the Strondex team understood our constraints immediately, helped us prioritize risk, strengthen critical controls, and build a realistic roadmap that fit our budget and operations. I'd recommend them to any public-sector organization looking for a security partner they can actually trust.

    Jerold

    IT Manager · Local Government

  • They helped us recover stronger than before.

    After a security incident, we needed more than a consultant. We needed experienced professionals who could find the root causes, close the gaps, and rebuild confidence in our environment. The Strondex team drove the remediation effort, strengthened our security controls and monitoring, and established governance processes that still benefit us today. Their expertise and professionalism carried us through a difficult recovery.

    Jose

    Accounting Manager · Financial Services · 10-person firm

  • They brought order to a complex compliance environment.

    Our environment was a tangle of overlapping compliance demands and client-trust obligations. Strondex brought order to it, assessing what we had, finding the gaps, and raising our security maturity in ways we could actually point to. Jason’s attention to detail and his ability to translate technical issues into business risk made him invaluable throughout the project. He delivered exactly what he promised, then kept finding ways to add value well beyond the original engagement.

    Mason

    Legal Services

  • They made enterprise security attainable for a nonprofit.

    Nonprofits constantly balance security needs against limited budgets, and Strondex understood our constraints from the outset. They delivered solutions that were both effective and realistic. Jason took the time to understand our mission, assess our risks, and prioritize the improvements that would have the greatest impact. The result was a stronger security program, better compliance readiness, and renewed confidence from our board and stakeholders.

    Naomi

    Founder · Nonprofit Organization · 85-person nonprofit

  • An extension of our MSP team.

    As an MSP, we needed a cybersecurity partner who could operate at a high technical level while staying professional in front of our clients. Strondex became exactly that. Jason and his team supported us with assessments, compliance initiatives, security reviews, and client advisory work. Their technical depth, responsiveness, and ability to explain complex topics clearly have made them one of the most valuable partners we’ve worked with.

    John

    vCISO · Managed Service Provider

Client names are abbreviated at our clients’ request. References available under NDA.

Ready to strengthen your own security posture?

Start with the free Cyber Insurance Prep Checklist, or head back to the homepage to see how Strondex works.