February 25, 2026

Cloudpass Case Study

“This year we’ve got a perfect audit, and that’s both on 9001 and 27001.” - Chris, CloudPass

Share this post

From manual compliance to a perfect audit score

As CloudPass expanded across the UK and Europe, managing ISO 9001 and ISO 27001 through manual processes became increasingly unsustainable. Audits were stressful, time-consuming and inconsistent. Hicomply changed that.

The result? Total visibility, zero non-conformities and compliance that runs in the background.

Overview

CloudPass is a unified cloud solution provider specialising in access control and time attendance platforms. Operating across the UK and Europe, the company supports construction sites, councils, schools and commercial spaces with ANPR and biometric access systems.

With notable clients including Hitachi Energy and Berkeley Group, CloudPass manages critical infrastructure where security, reliability and compliance are essential. As the business grew, its existing approach to compliance began to hold it back.

The challenge

Before partnering with Hicomply, CloudPass managed compliance using OneDrive. Documents were scattered across folders, version control was inconsistent and preparing for audits became increasingly stressful and time-consuming.

Key challenges included:
  • Fragmented document management
    Multiple versions of policies and evidence made it difficult to know what was current or audit-ready.
  • Manual, memory-based processes
    Internal audits, reminders and evidence collection relied on people remembering to chase tasks. Customer complaints logged via email were often missed.
  • High reliance on external auditors
    External consultants were brought in twice a year (once to review systems and once during the audit) costing around £5,000 annually.
  • Inconsistent audit results
    Despite the external support, CloudPass regularly received multiple minor non-conformities, creating additional pressure to resolve issues within strict certification deadlines.

Compliance took around 5-6 hours per month, with intense spikes of work in the run-up to audits that pulled focus away from core business priorities.

The solution

CloudPass chose Hicomply to replace its manual, document-heavy approach and bring structure, automation and visibility into its compliance programme.

Implementation was fast. Within six weeks, the platform was fully configured and in use, supported by weekly Customer Success sessions to migrate documents and align policies with Hicomply templates.

With Hicomply, CloudPass gained:
  • A single source of truth for compliance documentation, with full version control
  • Automated task scheduling for internal audits, reviews and evidence submission
  • Integrated evidence capture, including FreshDesk integration and a dedicated email for complaints and whistleblowing
  • A real-time monitoring platform showing exactly where the business is non-compliant
  • A Trust Centre to share certifications and controls with customers
  • Dashboard visibility for leadership to track compliance status at any time

The outcome

With Hicomply in place, CloudPass moved from reactive, last-minute compliance to continuous audit readiness with clear, measurable results.

Perfect audit results

Audit performance improved year on year:

  • Before Hicomply: “Around 10 minors”
  • Year 1: Reduced to 6 minor non-conformities
  • Year 2: Reduced to 3-4 minor non-conformities
  • Year 3: Zero non-conformities, majors or opportunities for improvement across both ISO 9001 and ISO 27001

“This year we’ve got a perfect audit, and that’s both on 9001 and 27001.”
- Chris, CloudPass

Chris credits Hicomply’s monitoring platform as a key driver:

“I can log in and instantly see where we’re not compliant. I’ve got a clear list to work from. Before, it was constant doubt – have I done this, is it ready, what have I missed?”

Reduced cost and time
  • £5,000 annual savings by removing the need for external auditors
  • Significantly reduced compliance effort, with no last-minute audit panic
  • A shift from reactive preparation to continuous, always-on compliance
Scalable compliance for growth

Hicomply has supported CloudPass’ growth without increasing compliance overhead:

“It’s allowed us to expand with ease. We’re not dealing with documents scattered across OneDrive or wondering what’s been missed.”

Why Hicomply

Today, Hicomply underpins CloudPass’ entire compliance programme, supporting multiple certifications while reducing time, cost and risk.

Key benefits include:
  • Audit excellence across ISO 9001 and ISO 27001
  • Lower costs with no reliance on external auditors
  • Greater confidence for leadership, customers and auditors
  • Ongoing expert support from Hicomply’s Customer Success team

“Everyone I’ve spoken to at Hicomply has been absolutely fantastic – always willing to go the extra mile. That constant support is what really sets them apart.”

Ready to simplify your compliance journey like CloudPass? Book a demo with Hicomply today and achieve certification with confidence.
Risk Management
Compliance Reporting
Policy Management
Incident Management
Audits and Assessments

Ready to Take Control of Your Privacy Compliance?

See how Hicomply can accelerate your path to CAF compliance in a 15-minute demo.

Risk Management

Identify, assess, and mitigate security risks with an integrated risk register.Hicomply’s automated risk management software maps controls across ISO 27001, SOC 2, and NIST frameworks — helping teams track risk treatment plans, assign ownership, and monitor real-time compliance status. Build a resilient ISMS that reduces audit findings and demonstrates continuous improvement.

Compliance Reporting

Generate instant, audit-ready compliance reports across multiple frameworks — from ISO 27001 and SOC 2 to GDPR, DORA, and NHS DSPT.Automated evidence collection and built-in dashboards provide a single source of truth for your compliance posture, saving weeks of manual work during audits.

Policy Management

Centralise, version, and publish all your information security policies in one place.Hicomply automates approvals, reminders, and distribution, ensuring your ISMS documentation stays current and aligned with frameworks like ISO 42001 and NIST CSF.Say goodbye to outdated PDFs — manage policies dynamically and maintain full traceability.

Incident Management

Capture, investigate, and resolve security incidents with structured workflows and automated evidence trails.Hicomply integrates with ticketing tools like Jira, Zendesk, and Azure DevOps to streamline incident response and link findings to risk and control updates — a key step for SOC 2 Type II readiness.

Audits and Assessments

Simplify internal and external audit preparation with built-in audit templates and automated task assignments.
Hicomply’s audit management platform aligns with ISO 27001, ISO 9001, and ISO 14001, giving teams a clear overview of control effectiveness, audit evidence, and corrective actions — all from one dashboard.