Product Habits - I had this nagging feeling

After building software for 16 years, I’ve learned to listen to my gut when it comes to selling SaaS products.

Early on during our pivot to Nira, I had this nagging feeling.

In order to sell SaaS products in today’s environment, we would need to address any and all security concerns that our potential customers had. I believed that by embedding a security mindset into our business as early as possible, it would help potential customers buy and adopt our product faster. 

It was during a leadership team meeting with my co-founder and our CTO - and I knew Marie and Steve weren’t expecting this from me - but I blurted out “We need to get our SOC 2 asap.”

We were already stretched thin, trying to build our real-time document access control product as fast as possible to meet customer demand. Marie and Steve naturally looked at me as if I was crazy. How were we going to carve out time and resources to do this too?

It’s more necessary than ever to make sure that your customer feels extremely comfortable about your security and compliance practices.

I knew in my bones that this was true, but I had to take the team on the journey with me.

Bottom-up SaaS adoption has caused IT to require companies to prove that their security practices are adequate to protect customer data. Tools used to spread easily throughout the org if users wanted them. Tons of unicorns have been built on that land and expand model.

But a shift has happened. IT now has more power to dictate the tools that people use. 

Every SaaS product, if it’s going to scale to a single department or up to a whole company, or if they are going to store company data, needs to make the IT and security departments at their customer’s companies happy. Or else they won’t buy the tool.

Every company that sells to other companies has to take security and compliance extremely seriously at this point. Cybersecurity is no longer an afterthought or a nice-to-have. Security is becoming every single person’s responsibility in the company to help. Even the smallest customers care now.

I was able to get Marie and Steve on board with getting our SOC 2 Type 2 as early as possible. And now, the three of us are super aligned on the absolute importance of security and compliance.

It’s not just about being enterprise ready. It’s about being security-minded as a company and making sure it’s woven into the fabric of the company’s DNA.

If you’re considering getting any compliance certifications, like SOC 2, ISO, or HIPAA, here are a few triggers that should help you know when it’s the right time:
  • Your customer cares about security and compliance. It could be because of their size, the buyer you’re selling to (i.e. IT, legal, security), the industry the company is in, or their customers’ requirements.
  • You are confident that you’ll be selling to customers that need these certifications in the near future.
  • You’re already being turned down by potential customers because you don’t have your SOC 2 (or another certification).
  • You are building a company in the security or compliance space.
  • Your company started and grew before SOC 2 existed and you’re now playing catch-up to make sure customers don’t churn.
In the coming weeks, I’ll be diving deep into how we’ve developed a security mindset at Nira by getting our SOC 2 Type 2 certification and more.

Hit reply if you’ve got questions or comments about security and compliance, I’ll make sure your questions get answered.

Take care,

Hiten











Copyright © 2021 Up Advisors, LLC., All rights reserved.
You received this email because you signed up to get emails from Product Habits.

Our mailing address is:
Up Advisors, LLC.
13337 South St. #269
Cerritos, California 90623

Add us to your address book


Want to change how you receive these emails?
You can update your preferences or unsubscribe from this list

Older messages

What COVID changed about hiring

Monday, June 21, 2021

So much changed during COVID—including how tech companies hire. Here's a peek into what changed at Facebook. Hiten's Pick A Project of One's Own I enjoyed Paul Graham's latest essay

Marie’s AMA was 🔥

Thursday, June 17, 2021

The most upvoted question was from Walter Chen, a founder of Sacra... The most upvoted question was from Walter Chen, a founder of Sacra: “one problem i encounter is getting really excited about an

How people discover new products

Monday, June 14, 2021

Beyond obvious ways to grow, like social media ads and SEO, here's what you should be doing to build product awareness. Hiten's Pick Lessons Learned Working With Zuckerberg for 13 Years Dan

Ask my co-founder anything

Wednesday, June 9, 2021

Marie is doing an AMA on Product Hunt and will be answering your questions tomorrow... Marie is doing an AMA on Product Hunt and will be answering your questions tomorrow. Ask Marie anything. Seriously

Nira is live

Tuesday, June 8, 2021

Because you've been on the journey with us, I wanted to share all the details about my new product with you first... Our new website is live! FYI is now Nira. Because you've been on the journey

You Might Also Like

Youre Overthinking It

Wednesday, January 15, 2025

Top Tech Content sent at Noon! Boost Your Article on HackerNoon for $159.99! Read this email in your browser How are you, @newsletterest1? 🪐 What's happening in tech today, January 15, 2025? The

eBook: Software Supply Chain Security for Dummies

Wednesday, January 15, 2025

Free access to this go-to-guide for invaluable insights and practical advice to secure your software supply chain. The Hacker News Software Supply Chain Security for Dummies There is no longer doubt

The 5 biggest AI prompting mistakes

Wednesday, January 15, 2025

✨ Better Pixel photos; How to quit Meta; The next TikTok? -- ZDNET ZDNET Tech Today - US January 15, 2025 ai-prompting-mistakes The five biggest mistakes people make when prompting an AI Ready to

An interactive tour of Go 1.24

Wednesday, January 15, 2025

Plus generating random art, sending emails, and a variety of gopher images you can use. | #​538 — January 15, 2025 Unsub | Web Version Together with Posthog Go Weekly An Interactive Tour of Go 1.24 — A

Spyglass Dispatch: Bromo Sapiens

Wednesday, January 15, 2025

Masculine Startups • The Fall of Xbox • Meta's Misinformation Off Switch • TikTok's Switch Off The Spyglass Dispatch is a newsletter sent on weekdays featuring links and commentary on timely

The $1.9M client

Wednesday, January 15, 2025

Money matters, but this invisible currency matters more. ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏

⚙️ Federal data centers

Wednesday, January 15, 2025

Plus: Britain's AI roadmap ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌

Post from Syncfusion Blogs on 01/15/2025

Wednesday, January 15, 2025

New blogs from Syncfusion Introducing the New .NET MAUI Bottom Sheet Control By Naveenkumar Sanjeevirayan This blog explains the features of the Bottom Sheet control introduced in the Syncfusion .NET

The Sequence Engineering #469: Llama.cpp is The Framework for High Performce LLM Inference

Wednesday, January 15, 2025

One of the most popular inference framework for LLM apps that care about performance. ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏ ͏

3 Actively Exploited Zero-Day Flaws Patched in Microsoft's Latest Security Update

Wednesday, January 15, 2025

THN Daily Updates Newsletter cover The Kubernetes Book: Navigate the world of Kubernetes with expertise , Second Edition ($39.99 Value) FREE for a Limited Time Containers transformed how we package and