Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. Delve, a startup that claims to be able to help you get SOC2 compliance in days

Delve, a startup that claims to be able to help you get SOC2 compliance in days

Scheduled Pinned Locked Moved Uncategorized
12 Posts 8 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • skinnylatte@hachyderm.ioS skinnylatte@hachyderm.io

    Delve, a startup that claims to be able to help you get SOC2 compliance in days

    Was not surprisingly revealed to have made it all up.

    Link Preview Image
    Delve - Fake Compliance as a Service - Part I

    How Delve managed to falsely convince hundreds of customers they were compliant and then lied about it when exposed and called out

    favicon

    (substack.com)

    msfjarvis@androiddev.socialM This user is from outside of this forum
    msfjarvis@androiddev.socialM This user is from outside of this forum
    msfjarvis@androiddev.social
    wrote last edited by
    #2

    @skinnylatte Forbes 30 under 30 continues to be the world's premier directory of scammers.

    1 Reply Last reply
    0
    • skinnylatte@hachyderm.ioS skinnylatte@hachyderm.io

      Delve, a startup that claims to be able to help you get SOC2 compliance in days

      Was not surprisingly revealed to have made it all up.

      Link Preview Image
      Delve - Fake Compliance as a Service - Part I

      How Delve managed to falsely convince hundreds of customers they were compliant and then lied about it when exposed and called out

      favicon

      (substack.com)

      skinnylatte@hachyderm.ioS This user is from outside of this forum
      skinnylatte@hachyderm.ioS This user is from outside of this forum
      skinnylatte@hachyderm.io
      wrote last edited by
      #3

      The only thing that offends me more than scammers are sloppy scammers. At least take some pride in your work and in your calling.

      viss@mastodon.socialV skinnylatte@hachyderm.ioS 2 Replies Last reply
      0
      • skinnylatte@hachyderm.ioS skinnylatte@hachyderm.io

        The only thing that offends me more than scammers are sloppy scammers. At least take some pride in your work and in your calling.

        viss@mastodon.socialV This user is from outside of this forum
        viss@mastodon.socialV This user is from outside of this forum
        viss@mastodon.social
        wrote last edited by
        #4

        @skinnylatte i gave a talk once about a bunch of ways people can fake credibility, like buying certs and reviews. this didn't exist back then but hoooboy does it fit the bill

        1 Reply Last reply
        0
        • skinnylatte@hachyderm.ioS skinnylatte@hachyderm.io

          The only thing that offends me more than scammers are sloppy scammers. At least take some pride in your work and in your calling.

          skinnylatte@hachyderm.ioS This user is from outside of this forum
          skinnylatte@hachyderm.ioS This user is from outside of this forum
          skinnylatte@hachyderm.io
          wrote last edited by
          #5

          There’s a bunch of other compliance startups in this space worth billions of dollars. They’re all claiming to be AI-native but they’re forms stitched together (and not even doing anything remotely interesting or useful).

          If you understand the tech you know that we are years away from a single AI, no matter what you say you’re doing with it, from being reliably able to perform this specific list of tasks in this order

          skinnylatte@hachyderm.ioS eniatitova@sfba.socialE 2 Replies Last reply
          0
          • skinnylatte@hachyderm.ioS skinnylatte@hachyderm.io

            There’s a bunch of other compliance startups in this space worth billions of dollars. They’re all claiming to be AI-native but they’re forms stitched together (and not even doing anything remotely interesting or useful).

            If you understand the tech you know that we are years away from a single AI, no matter what you say you’re doing with it, from being reliably able to perform this specific list of tasks in this order

            skinnylatte@hachyderm.ioS This user is from outside of this forum
            skinnylatte@hachyderm.ioS This user is from outside of this forum
            skinnylatte@hachyderm.io
            wrote last edited by
            #6

            The founders have also been on social media praising their devs for pulling all nighters

            Now that this is out, I hope everyone is very proud of themselves

            vwampage@xoxo.zoneV constantorbit@hachyderm.ioC eestileib@tech.lgbtE 4 Replies Last reply
            0
            • skinnylatte@hachyderm.ioS skinnylatte@hachyderm.io

              Delve, a startup that claims to be able to help you get SOC2 compliance in days

              Was not surprisingly revealed to have made it all up.

              Link Preview Image
              Delve - Fake Compliance as a Service - Part I

              How Delve managed to falsely convince hundreds of customers they were compliant and then lied about it when exposed and called out

              favicon

              (substack.com)

              kf@666.glitchwit.chK This user is from outside of this forum
              kf@666.glitchwit.chK This user is from outside of this forum
              kf@666.glitchwit.ch
              wrote last edited by
              #7

              @skinnylatte I just had a conversation with a healthcare clinician about this yesterday 😭

              context was clinicians in private practice adopting AI services to use with patient data

              was telling them about how many tech workers don't actually build compliant services but slap badges on their software saying they did

              and wondered aloud how clinicians in private practice without IT backgrounds would ever know the difference between legit services and those that are not truly HIPAA compliant?

              1 Reply Last reply
              0
              • skinnylatte@hachyderm.ioS skinnylatte@hachyderm.io

                The founders have also been on social media praising their devs for pulling all nighters

                Now that this is out, I hope everyone is very proud of themselves

                vwampage@xoxo.zoneV This user is from outside of this forum
                vwampage@xoxo.zoneV This user is from outside of this forum
                vwampage@xoxo.zone
                wrote last edited by
                #8

                @skinnylatte All nighters are such a phenomenally bad idea. Even if it weren't likely a lie I'd expect a compliance company to make more mistakes when doing that rather than less.

                1 Reply Last reply
                0
                • skinnylatte@hachyderm.ioS skinnylatte@hachyderm.io

                  There’s a bunch of other compliance startups in this space worth billions of dollars. They’re all claiming to be AI-native but they’re forms stitched together (and not even doing anything remotely interesting or useful).

                  If you understand the tech you know that we are years away from a single AI, no matter what you say you’re doing with it, from being reliably able to perform this specific list of tasks in this order

                  eniatitova@sfba.socialE This user is from outside of this forum
                  eniatitova@sfba.socialE This user is from outside of this forum
                  eniatitova@sfba.social
                  wrote last edited by
                  #9

                  @skinnylatte it all stems from a ridiculous idea that “compliance” is just checking off a bunch of boxes on a form and then you’re done. I’m constantly battling this at work. Compliance is designing your systems/product/processes so that they ensure *something*: data security, AI governance, unbiased decision making. and then it’s continuing to audit that thing to make sure it’s still doing it. forever.

                  you can’t fucking have SOC 2/PCI/GDPR/HIPAA/AML/FedRAMP in two days no matter what anyone tells you.

                  1 Reply Last reply
                  0
                  • skinnylatte@hachyderm.ioS skinnylatte@hachyderm.io

                    The founders have also been on social media praising their devs for pulling all nighters

                    Now that this is out, I hope everyone is very proud of themselves

                    constantorbit@hachyderm.ioC This user is from outside of this forum
                    constantorbit@hachyderm.ioC This user is from outside of this forum
                    constantorbit@hachyderm.io
                    wrote last edited by
                    #10

                    @skinnylatte 🤮

                    1 Reply Last reply
                    0
                    • skinnylatte@hachyderm.ioS skinnylatte@hachyderm.io

                      The founders have also been on social media praising their devs for pulling all nighters

                      Now that this is out, I hope everyone is very proud of themselves

                      constantorbit@hachyderm.ioC This user is from outside of this forum
                      constantorbit@hachyderm.ioC This user is from outside of this forum
                      constantorbit@hachyderm.io
                      wrote last edited by
                      #11

                      @skinnylatte developers pulling all-nighters is a sign of failure, not success. You know that and I know that and will the tech bros ever learn that? Probably not.

                      1 Reply Last reply
                      0
                      • skinnylatte@hachyderm.ioS skinnylatte@hachyderm.io

                        The founders have also been on social media praising their devs for pulling all nighters

                        Now that this is out, I hope everyone is very proud of themselves

                        eestileib@tech.lgbtE This user is from outside of this forum
                        eestileib@tech.lgbtE This user is from outside of this forum
                        eestileib@tech.lgbt
                        wrote last edited by
                        #12

                        @skinnylatte

                        I've been through compliance at a mega corp and as far as I can tell someone gets appointed to be the muggins who sits in a conference room while people who are paid to tick boxes tick boxes.

                        Perhaps this perception came from that company already having fairly strict internal rules, perhaps from a sock puppet auditor, I don't know.

                        I totally understand why someone who had only ever seen the process from the next room would think this is prime sinecure territory, it certainly seemed like an expensive no-op from my desk.

                        1 Reply Last reply
                        0
                        • R relay@relay.an.exchange shared this topic
                        Reply
                        • Reply as topic
                        Log in to reply
                        • Oldest to Newest
                        • Newest to Oldest
                        • Most Votes


                        • Login

                        • Login or register to search.
                        • First post
                          Last post
                        0
                        • Categories
                        • Recent
                        • Tags
                        • Popular
                        • World
                        • Users
                        • Groups