" /> ITSECOPS Client Testimonials and Reviews: CMMC, SOC 2, NIS2, 24x7 SOC
Guide

ITSECOPS Client Testimonials: CMMC, SOC 2, NIS2, 24×7 SOC and MSP Support in Clients’ Own Words

What ITSECOPS clients say about their CMMC compliance journey, SOC 2 Type 1 in 30 days, SIEM and NIS2 incident response, 24x7 SOC coverage and white-label MSP support. Named people, named companies, reference calls on request.

Updated · Oct 2026 By ITSECOPS Free · No signup

Client testimonials · Updated 6 October 2026

In short: five clients, five engagements, in their own words: a CMMC compliance journey (MVL Group, USA), white-label MSP support and staff augmentation (Palmiq, USA), a SOC 2 Type 1 report delivered within 30 days (Prolific Tech), SIEM and NIS2 incident response (Menken BV, Netherlands) and 24×7 SOC coverage (Horde). Every quote names the person, the company and what was delivered, and we arrange reference calls on request.

ITSECOPS delivers remotely from Stavanger, Norway and a 24×7 operations centre in Greater Noida, India, so most clients never meet us in person. That is exactly why we publish who said what: when you are choosing a partner for a compliance deadline or for the night shift, a named client who has already been through it is worth more than a badge.

What clients say

“ITSECOPS has guided our CMMC compliance journey from day one. They turned a complex set of requirements into a clear plan our team could follow, and they were there at every step.”

Rita Jama, MVL Group, USA · CMMC compliance journey

CMMC Level 2 readiness

“The ITSECOPS policies and procedures are the true backbone of our MSP support. With their staff augmentation we scaled our service desk without compromising on quality.”

Khaja Naseer, Palmiq, USA · MSP support and staff augmentation

White-label MSP support, staff augmentation

“Our client asked for an urgent SOC 2 Type 1 report within 30 days. ITSECOPS delivered it on time and saved our day.”

Rohit Dubey, Prolific Tech · SOC 2 Type 1 in 30 days

SOC 2 Type 1 readiness

“ITSECOPS set up our SIEM and took over alert triage, so that alerting and incident response for NIS2 are always on top, never an afterthought.”

Sander Waaning, Menken BV, Netherlands · SIEM and NIS2 incident response

SIEM set-up, alert triage, NIS2

“With ITSECOPS we finally have real 24×7 SOC coverage: someone is watching and responding at three in the morning, which is exactly when it matters.”

Alf Andersen, Horde · 24×7 SOC coverage

Shared 24×7 SOC

What these engagements had in common

Each one started with a deadline someone else set: a prime contractor asking for CMMC evidence, a customer asking for a SOC 2 report, NIS2 reporting windows of 24 and 72 hours, or an MSP whose clients expected a service desk that answers at night. In every case the work was fixed-fee or a published monthly price, written procedures came first, and the client kept their own tools and tenant. The same model is behind the NIS2 gap analysis, the CMMC Level 2 gap analysis and the SOC 2 Type 2 gap analysis tools on this site.

ITSECOPS client references, in short (October 2026)

Who
ITSecOps.cloud (ITSECOPS), managed IT, 24×7 SOC and compliance readiness for SMBs and MSPs, offices in Stavanger, Norway and Greater Noida, India. Led by Gaurav Sengar, CISA, Founder ITSECOPS.
Named clients
MVL Group (USA, CMMC), Palmiq (USA, white-label MSP support and staff augmentation), Prolific Tech (SOC 2 Type 1 in 30 days), Menken BV (Netherlands, SIEM and NIS2), Horde (24×7 SOC).
Case studies
CMMC Level 2 remediation for a Baltimore defense contractor; ISO 27001 in four months for a New York fintech; HIPAA and SOC 2 for a Florida healthtech; SOC 2 Type 2 and Cyber Essentials Plus for a London SaaS company.
References
Reference calls arranged on request, matched by framework, service and region.
Contact
info@itsecops.cloud · +47 510 20 093 · Ask for a reference call

Frequently asked questions

Are these testimonials verified?

Each statement was given to ITSECOPS by the named client contact and is published with their name, company and the engagement it refers to. On request we arrange a reference call with the client contact before you sign.

Why are there no star ratings?

Star ratings on a vendor’s own site are not independent, and Google does not treat self-hosted ratings as rich results. We publish what clients said, who said it and what was delivered; the public 5.0 rating on Google is separate and independent.

Can I speak to a reference in my industry or country?

Yes. Tell us the framework (CMMC, SOC 2, ISO 27001, NIS2) or the service (24×7 SOC, white-label MSP support, managed IT) and the region; we match you with a client who has agreed to take reference calls.

Where can I read the detailed case studies?

The Projects page and the case-study section cover CMMC Level 2 remediation for a Baltimore defense contractor, SOC 2 readiness, ISO 27001 in four months for a New York fintech and SOC 2 Type 2 with Cyber Essentials Plus for a London SaaS company.

Related

Projects and case studies · ISO 27001 in 4 months, New York fintech · CMMC Level 2 case study, Baltimore · Partners · Contact

Need help applying this to your environment?

We turn compliance guides into shipped controls. Talk to an engineer.

Book a consultation
Popular guides and pricingCybersecurity price comparison 2026  ·  EDR pricing per endpoint  ·  MDR pricing per device  ·  Veeam vs Acronis vs Datto  ·  Remote IT support pricing  ·  White-label help desk pricing  ·  24/7 SOC monitoring cost  ·  Top MDR providers  ·  White-label NOC and SOC for MSPs  ·  Top ISO 27001 consulting firms  ·  ISO 27001 implementation plan  ·  CMMC readiness services  ·  Top CMMC consulting firms  ·  ISO 42001 AI certification  ·  Global laptop provisioning and MDM  ·  Security stack recommender  ·  Managed IT services Norway