Does Secureframe perform the SOC 2 audit?
Secureframe automates evidence collection and provides the Audits Module, but the examination and signed SOC 2 opinion still belong to a licensed CPA firm of record. The platform manages the workspace; it does not become the attesting auditor.
The Audits Module ties an engagement to a framework and observation window, then exposes only the in-scope controls, tests, and evidence for that period. That plumbing makes the auditor choice more important, not less: the firm decides whether the evidence is sufficient and what extra work is required.
Firms below have Secureframe in their maintained directory records. Confirm whether each one currently uses the Audit Partner Console, another portal, or exports before you treat the connection as live.