Cycore Secure
Cycore (Cycore Secure) is a Miami-based cybersecurity, risk, and compliance firm and Thoropass implementation partner. We help startups, mid-market, and enterprise companies get audit-ready and stay compliant with SOC 2, ISO 27001, HIPAA, PCI DSS, HITRUST, and more. Founded in 2024, Cycore serves clients globally in SaaS, fintech, healthtech, and healthcare. Thoropass implementation services Most Thoropass implementations are completed in 3–5 weeks using a four-phase approach: 1. Discovery and gap analysis of your security posture, documentation, and infrastructure 2. Configuration and integration: roles, framework selection, control mapping, and integrations such as AWS, Azure, GCP, Okta, and GitHub 3. Validation and training: verify evidence, close gaps, and train your team 4. Ongoing management: monitor controls, remediate failures, and maintain evidence through every audit cycle Other services • Virtual CISO (vCISO): security strategy, roadmaps, risk management, security questionnaires, and incident response planning • Virtual Data Protection Officer (vDPO) for GDPR and data privacy • GRC platform administration for Thoropass, Vanta, Drata, and Secureframe • Internal audits for ISO 27001 and ISO 42001 • Cyber risk assessments and third-party risk management Frameworks we support SOC 2, ISO 27001, HIPAA, PCI DSS, HITRUST CSF, GDPR, FedRAMP, CMMC, NIST CSF, NIS 2, DORA, Cyber Essentials, Essential Eight, and AI governance frameworks including ISO 42001, NIST AI RMF, and the EU AI Act. Who we work with Series A startups preparing for a first SOC 2 or ISO 27001 audit, mid-market companies (50–1,000+ employees) that have outgrown ad-hoc security, and regulated enterprises that need to pass security reviews and close deals faster. Leadership • Kevin Barona, Founder & CEO: 10+ years of Big Four cybersecurity consulting at Deloitte, focused on enterprise IT/OT security • Jai Sisodia, Managing Director of Cybersecurity, AI & Privacy: 15+ years of experience; CISSP and OSCP certified Why Cycore • A senior security leader backed by a full team, not a solo consultant • Outcome-driven engagements, not billable hours • Hands-on expertise across all major GRC platforms • Proven results: ReadMe saved 1,656 hours with Cycore's GRC admin services