Read More

About Us

Compliance, Decrypted

Decrypt is independent, founder-led, and built on the belief that trust between businesses isn’t just good practice – it’s what makes the tech ecosystem work.
years of experience
0 +
Projects
0 +
Clients
0 +

Your Value-Driven Audit Squad

Decrypt Compliance is a Silicon Valley cybersecurity audit firm built by technology veterans for high-growth B2B SaaS companies. Our professionals specialize in conducting rigorous security compliance audits without compromising quality, honed by experiences at leading tech companies such as Google, Tencent, and Salesforce, as well as Big 4 firms.
We believe trust between businesses is essential for innovation in today’s interdependent tech ecosystems. Our audits foster trusted B2B relationships by verifying security claims through impartial third-party validation.

Building Trusted Partnerships

Unbreakable bonds, uncompromised security. Decrypt Compliance: your trusted partner in building secure B2B partnerships through expert security audits.
Responsive
We believe trust between businesses is essential for innovation in today’s interdependent tech ecosystems. Our audits foster trusted B2B relationships by verifying security claims through impartial third-party validation.
Responsible
Our experience with multi-national companies equips us to simplify even the most complex global certification processes. Our distributed team allows us to operate 24/7 and provide round-the-clock support no matter where your teams are located.
Resilient
At Decrypt, we believe fostering trust is a fundamental social good. That means no “rubber stamps,” ever. Our responsibility to help you objectively prove your commitment to the security of your customers’ data is of utmost importance to us.
01

Readiness

Together, we execute a rapid evaluation of your internal controls to build your roadmap to compliance.

Two men are sitting on modern chairs in an office space, engaged in conversation. One wears a black leather jacket and boots, the other a blue shirt and brown shoes. A large plant is nearby and vertical blinds cover the window behind them.

03

Certification

We serve as your external audit partner to certify you against the best practices your customers expect.

02

Implementation

Our experts tailor the controls to match your business needs in preparation for your audit period.

Four people sit and smile in a classroom, while a fifth person stands at a podium in front of a whiteboard and projector screens, leading a discussion or presentation.
A woman with long dark hair wearing a white sweater and black scarf sits at a desk with a laptop. A blue bottle of water is nearby. City buildings are visible through the window behind her.

03

Certification

We serve as your external audit partner to certify you against the best practices your customers expect.

Video

About Decrypt Compliance by Raymond Cheng

The People Behind Your Success

Every audit, every report, and every client win is powered by the people you see here. These snapshots reflect the dedication and collaboration that drive Decrypt’s work.

Frequently Asked Questions

Get Started

Ready to Get Certified and Close More Deals?

Tell us about your company and we’ll get back to you with a clear path to certification – including timeline and pricing.

Consultation form

Name(Required)

Raymond Cheng has dedicated his career to advancing the technology compliance profession. With nearly 10 years of experience in security and privacy compliance, including roles at EY and Global 500 companies like Google, Salesforce, and Tencent, Raymond founded Decrypt Compliance to foster trust and accelerate the global economy. He is an active contributor to his field, and serves on the Board of the Rotary Club of San Francisco Bay Area.

Raymond holds CPA.CITP, CISSP, CISA, CCSK, CIPP/E, and ISO 27001 Lead Auditor certifications. He is proficient in English, Cantonese, Mandarin, and Spanish.

"Growth is never by mere chance; it is the result of forces working together"

Lindisiwe (Lyndie) Dube has built her career in information security, compliance, and financial accounting, helping organizations navigate complex regulatory and security requirements. With a background in finance and technology compliance, she brings practical experience in risk, governance, and audit frameworks that underpin security programs. At Decrypt Compliance, Lyndie performs security and compliance audits, evaluating organizations’ controls against globally recognized frameworks. Lyndie holds CISA, ISO 27001 and ISO 42001 Lead Auditor certifications. She is also a member of the Rotary Club of Centurion, where she contributes to community initiatives focused on service, leadership, and social impact. She is proficient in English, IsiNdebele, and Zulu.

"There are no limits to what you can accomplish, except the limits you place on your own thinking."

Lee Govender is a dedicated IT Professional with experience in information security and compliance. Lee has worked in IT Audit and Advisory for major financial institutions in South Africa’s JSE Top 40 and in customer success where he assisted clients with ISO 27001 certifications and SOC 2 reports. Lee’s expertise spans both technical auditing and client relationship management.

Committed to continuous improvement, Lee holds a Microsoft Azure Fundamentals Certificate. Beyond his professional pursuits, Lee is passionate about animal welfare and actively volunteers with the Society for the Prevention of Cruelty to Animals.

"Nothing is impossible, the word itself says ‘I’m possible’!"

Tintswalo is an IT Audit and Compliance professional with experience across IT General Controls, SOX, SOC, and compliance-related audits. She combines her technical expertise with a keen analytical mindset to ensure organizations maintain strong control environments and meet regulatory standards. Tintswalo holds a BA in Forensic Science and Technology and has a background in Information Systems, which allows her to bridge the gap between IT systems and forensic analysis. Passionate about continuous learning and professional growth, she is committed to helping organizations navigate complex compliance landscapes.

“We are what we repeatedly do. Excellence, then, is not an act, but a habit.”

Jana Storm is a seasoned IT Audit and Risk Assurance professional with extensive experience at PwC, where she specialized in banking and capital markets. Jana’s unique people-oriented approach ensures organizations meet both regulatory and operational standards while fostering positive team environments.

Jana holds a BCom Honours in Management Accounting and is currently pursuing her CIMA qualification. Beyond her professional pursuits, she is passionate about mentoring colleagues and is an avid runner who believes in the power of physical movement to build mental resilience. Jana actively promotes workplace environments where people feel valued and engaged.

"If you want to go fast, go alone. If you want to go far, go together."

Sesona is a technology audit and assurance professional with a background in IT audit, technology risk, and analytics. He previously worked at Deloitte in the IT Audit and Assurance service line, where he supported external audits and third-party assurance engagements across the consumer, technology, and financial services industries. His work has involved evaluating technology controls, systems, and business processes, and he has a strong interest in understanding how technology, data, and governance interact in complex environments. Sesona enjoys approaching problems analytically and applying structured thinking to areas related to audit, compliance, and technology risk. He holds a BSc in Computer Science, is currently pursuing a BSc (Hons) in Computer Science, and is Microsoft Azure certified.

"Be yourself; everyone else is already taken"

Lauren Van Niekerk is a dedicated information security professional from the Asset Management Industry. She has experience across various frameworks including ISO, SOC 2, GDPR and CCPA. Lauren is obtaining her Masters in Information Security & Digital Forensics. As part of paying it forward, she regularly donates to the Red Cross Children’s Hospital.

"Great works are performed not by strength, but by perseverance"

Julian Antoniou is an IT audit and security professional with a BSc Hons in Cybersecurity from The Open University UK. Julian has completed various certifications in network security, risk management, and security awareness and is actively expanding his knowledge in IT auditing and compliance standards to support clients in achieving their compliance goals.

Beyond his professional work, Julian believes in the philosophy of “a healthy body, a healthy mind.” He sees discipline in physical health as complementary to discipline in professional development. Julian is fluent in English, has conversational proficiency in Afrikaans, and possesses a basic understanding of Greek.

"Excellence is never an accident. It is always the result of high intention, sincere effort, and intelligent execution."

Marcel Pillay is a seasoned audit professional with extensive experience in various industries including many of South Africa’s JSE Top 40 listed companies. Marcel is a Chartered Accountant (CA(SA)), Certified Information Systems Auditor (CISA) and Certified Internal Auditor (CIA), this broad range of experience across a multitude of industries gives him unique a perspective on risk and how technology can enable business operations while at the same time optimizing controls. Marcel spent 17 years at PwC and as an Associate Director in PwC’s Risk Assurance division, he specialized in SOC and ISAE audit reporting. Outside of the office, he has spends his time cooking for friends and family and believes balance is needed in all aspects of ones life.

"The journey of a thousand miles begins with a single step."

Mulisa Ramalisa is a Governance, Risk, and Compliance (GRC) and IT Audit professional with over four years of experience across financial services, technology, and risk control environments. She has worked with leading firms including EY and Deloitte, delivering risk-based audits, evaluating IT and application controls, and advising on governance and security frameworks.
Mulisa holds a BCom in Financial Sciences and a BCom Honours in Internal Auditing from the University of Pretoria and is CISA certified. Her credentials include Microsoft Azure Fundamentals, Identity & Access Administration, SAP Access Control, and data analytics certifications. Passionate about IT, cybersecurity and AI, Mulisa is committed to strengthening governance, enhancing control environments, and contributing meaningfully to the professional and business community.

“Do what you can, with what you have, where you are.”

Esther Mkize is an IT Audit professional with approximately five years of experience in technology risk and assurance, primarily within the banking and financial services sector, with exposure to other industries as well. Her experience includes application control reviews, IT infrastructure audits, and IT general controls, developed through her work at SNG Grant Thornton and PwC.

Esther is particularly interested in the intersection of technology risk and governance, and enjoys understanding how systems operate beneath the surface to identify, assess, and manage risks effectively.

Outside of her professional work, Esther values continuous learning and personal growth. She appreciates structured thinking, clear communication, and collaborative problem-solving in everything she does.

“Grounded, intentional, and always evolving”