Read More

About us

Compliance, Decrypted

years of experience
0 +
Projects
0 +
Clients
0 +

About Us

Decrypt Compliance: Your Value-Driven Audit Squad

Decrypt Compliance is a Silicon Valley cybersecurity audit firm built by technology veterans for high-growth B2B SaaS companies. Our professionals specialize in conducting rigorous security compliance audits without compromising quality, honed by experiences at leading tech companies such as Google, Tencent, and Salesforce as well as Big 4 firms.

We believe trust between businesses is essential for innovation in today’s interdependent tech ecosystems. Our audits foster trusted B2B relationships by verifying security claims through impartial third-party validation. As your audit partner, we maintain our quality and objectivity standards so we continue to earn industry trust, your trust, and your customers’ confidence in your brand’s promises.

Building Trusted Partnerships

Unbreakable bonds, uncompromised security. Decrypt Compliance: your trusted partner in building secure B2B partnerships through expert security audits.

At Decrypt, we’ve reimagined audit delivery from the ground up to keep pace with your business and provide unmatched speed without compromising quality. Our methodology combines the rigor of an AICPA accredited CPA firm with the agility of modern technology, saving you time and money. We cut complexity, not corners. The result? Audits at record pace paired with irrefutable confidence.

Our experience with multi-national companies equips us to simplify even the most complex global certification processes. Our distributed team allows us to operate 24/7 and provide round-the-clock support no matter where your teams are located. Just like your business, we collaborate seamlessly without borders or time zones.

At Decrypt, we believe fostering trust is a fundamental social good. That means no “rubber stamps,” ever. Our responsibility to help you objectively prove your commitment to the security of your customers’ data is of utmost importance to us. We hone our internal quality craft because your trust, your customers’ trust, and trust in the tech ecosystem, are our priority.

At Decrypt, we’ve reimagined audit delivery from the ground up to keep pace with your business and provide unmatched speed without compromising quality. Our methodology combines the rigor of an AICPA accredited CPA firm with the agility of modern technology, saving you time and money. We cut complexity, not corners. The result? Audits at record pace paired with irrefutable confidence.

Our experience with multi-national companies equips us to simplify even the most complex global certification processes. Our distributed team allows us to operate 24/7 and provide round-the-clock support no matter where your teams are located. Just like your business, we collaborate seamlessly without borders or time zones.

At Decrypt, we believe fostering trust is a fundamental social good. That means no “rubber stamps,” ever. Our responsibility to help you objectively prove your commitment to the security of your customers’ data is of utmost importance to us. We hone our internal quality craft because your trust, your customers’ trust, and trust in the tech ecosystem, are our priority.

01

Readiness

Together, we execute a rapid evaluation of your internal controls to build your roadmap to compliance.

03

Certification

We serve as your external audit partner to certify you against the best practices your customers expect.

02

Implementation

Our experts tailor the controls to match your business needs in preparation for your audit period.

03

Certification

We serve as your external audit partner to certify you against the best practices your customers expect.

Raymond Cheng

Founder & CEO

Raymond Cheng has dedicated his career to advancing the technology compliance profession. With nearly 10 years of experience in security and privacy compliance, including roles at EY and Global 500 companies like Google, Salesforce, and Tencent, Raymond founded Decrypt Compliance to foster trust and accelerate the global economy. He is an active contributor to his field, and serves on the Board of the Rotary Club of San Francisco Bay Area.

Raymond holds CPA.CITP, CISSP, CISA, CCSK, CIPP/E, and ISO 27001 Lead Auditor certifications. He is proficient in English, Cantonese, Mandarin, and Spanish.

"Growth is never by mere chance; it is the result of forces working together"

Lindisiwe Dube

Technology Trust Services

Lindisiwe (Lyndie) Dube is a conscientious professional with extensive experience in SOC2 and ISO 27001 audits. Having worked in South Africa and Zimbabwe, both in the private sector and with non-profits like Steady Reach NPO and Rotary Club Centurion, Lyndie understands our clients’ diverse needs. She is a Certified Information Systems Auditor and ISO27001 Lead Auditor, proficient in English, IsiNdebele, and Zulu.

"There are no limits to what you can accomplish, except the limits you place on your own thinking."

Lee Govender

Technology Trust Services

Lee Govender is a dedicated IT Professional with experience in information security and compliance. Lee has worked in IT Audit and Advisory for major financial institutions in South Africa’s JSE Top 40 and in customer success where he assisted clients with ISO 27001 certifications and SOC 2 reports. Lee’s expertise spans both technical auditing and client relationship management.
Committed to continuous improvement, Lee holds a Microsoft Azure Fundamentals Certificate. Beyond his professional pursuits, Lee is passionate about animal welfare and actively volunteers with the Society for the Prevention of Cruelty to Animals.

"Nothing is impossible, the word itself says ‘I’m possible’!"

Tasha Chetty

Technology Trust Services

Tasha Chetty Tasha Chetty brings extensive audit and compliance expertise from her experience at Deloitte in the highly regulated gaming industry. Her background spans internal audit, IT controls, and GRC implementation, with specialized experience conducting ISO 27001 audits. Tasha’s perspectives from non-IT industries enables her to deliver practical security insights for our clients.

"Success is not final, failure is not fatal: It is the courage to continue that counts."

Jana Storm

Technology Trust Services

Jana Storm is a seasoned IT Audit and Risk Assurance professional with extensive experience at PwC, where she specialized in banking and capital markets. Jana’s unique people-oriented approach ensures organizations meet both regulatory and operational standards while fostering positive team environments.
Jana holds a BCom Honours in Management Accounting and is currently pursuing her CIMA qualification. Beyond her professional pursuits, she is passionate about mentoring colleagues and is an avid runner who believes in the power of physical movement to build mental resilience. Jana actively promotes workplace environments where people feel valued and engaged.

"If you want to go fast, go alone. If you want to go far, go together."

Dian Strydom

Technology Trust Services

Dian Strydom is a detail-orientated IT auditor with extensive experience in assessing and improving IT controls across various industries, including South Africa’s JSE Top 40 companies. Having previously worked at PwC, Dian has developed a strong understanding in identifying risks, enhancing compliance and driving efficiencies within the audit process. Committed to continuous learning, Dian is currently pursuing the Certified Internal Auditor (CIA) certification to further his expertise in audit and risk management.

Limitations are perceptions.

Lauren Van Niekerk

Technology Trust Services

Lauren Van Niekerk is a dedicated information security professional from the Asset Management Industry. She has experience across various frameworks including ISO, SOC 2, GDPR and CCPA. Lauren is obtaining her Masters in Information Security & Digital Forensics. As part of paying it forward, she regularly donates to the Red Cross Children’s Hospital.

"Great works are performed not by strength, but by perseverance"

Julian Antoniou

Technology Trust Services

Julian Antoniou is an IT audit and security professional with a BSc Hons in Cybersecurity from The Open University UK. Julian has completed various certifications in network security, risk management, and security awareness and is actively expanding his knowledge in IT auditing and compliance standards to support clients in achieving their compliance goals.
Beyond his professional work, Julian believes in the philosophy of “a healthy body, a healthy mind.” He sees discipline in physical health as complementary to discipline in professional development. Julian is fluent in English, has conversational proficiency in Afrikaans, and possesses a basic understanding of Greek.

"Excellence is never an accident. It is always the result of high intention, sincere effort, and intelligent execution."

Raymond Cheng

Founder & CEO

Raymond Cheng has dedicated his career to advancing the technology compliance profession. With nearly 10 years of experience in security and privacy compliance, including roles at EY and Global 500 companies like Google, Salesforce, and Tencent, Raymond founded Decrypt Compliance to foster trust and accelerate the global economy. He is an active contributor to his field, and serves on the Board of the Rotary Club of San Francisco Bay Area.

Raymond holds CPA.CITP, CISSP, CISA, CCSK, CIPP/E, and ISO 27001 Lead Auditor certifications. He is proficient in English, Cantonese, Mandarin, and Spanish.

"Growth is never by mere chance; it is the result of forces working together"

Lindisiwe Dube

Technology Trust Services

Lindisiwe (Lyndie) Dube is a conscientious professional with extensive experience in SOC2 and ISO 27001 audits. Having worked in South Africa and Zimbabwe, both in the private sector and with non-profits like Steady Reach NPO and Rotary Club Centurion, Lyndie understands our clients’ diverse needs. She is a Certified Information Systems Auditor and ISO27001 Lead Auditor, proficient in English, IsiNdebele, and Zulu.

"There are no limits to what you can accomplish, except the limits you place on your own thinking."

Lee Govender

Technology Trust Services

Lee Govender is a dedicated IT Professional with experience in information security and compliance. Lee has worked in IT Audit and Advisory for major financial institutions in South Africa’s JSE Top 40 and in customer success where he assisted clients with ISO 27001 certifications and SOC 2 reports. Lee’s expertise spans both technical auditing and client relationship management.
Committed to continuous improvement, Lee holds a Microsoft Azure Fundamentals Certificate. Beyond his professional pursuits, Lee is passionate about animal welfare and actively volunteers with the Society for the Prevention of Cruelty to Animals.

"Nothing is impossible, the word itself says ‘I’m possible’!"

Tasha Chetty

Technology Trust Services

Tasha Chetty Tasha Chetty brings extensive audit and compliance expertise from her experience at Deloitte in the highly regulated gaming industry. Her background spans internal audit, IT controls, and GRC implementation, with specialized experience conducting ISO 27001 audits. Tasha’s perspectives from non-IT industries enables her to deliver practical security insights for our clients.

"Success is not final, failure is not fatal: It is the courage to continue that counts."

Jana Storm

Technology Trust Services

Jana Storm is a seasoned IT Audit and Risk Assurance professional with extensive experience at PwC, where she specialized in banking and capital markets. Jana’s unique people-oriented approach ensures organizations meet both regulatory and operational standards while fostering positive team environments.
Jana holds a BCom Honours in Management Accounting and is currently pursuing her CIMA qualification. Beyond her professional pursuits, she is passionate about mentoring colleagues and is an avid runner who believes in the power of physical movement to build mental resilience. Jana actively promotes workplace environments where people feel valued and engaged.

"If you want to go fast, go alone. If you want to go far, go together."

Dian Strydom

Technology Trust Services

Dian Strydom is a detail-orientated IT auditor with extensive experience in assessing and improving IT controls across various industries, including South Africa’s JSE Top 40 companies. Having previously worked at PwC, Dian has developed a strong understanding in identifying risks, enhancing compliance and driving efficiencies within the audit process. Committed to continuous learning, Dian is currently pursuing the Certified Internal Auditor (CIA) certification to further his expertise in audit and risk management.

Limitations are perceptions.

Lauren Van Niekerk

Technology Trust Services

Lauren Van Niekerk is a dedicated information security professional from the Asset Management Industry. She has experience across various frameworks including ISO, SOC 2, GDPR and CCPA. Lauren is obtaining her Masters in Information Security & Digital Forensics. As part of paying it forward, she regularly donates to the Red Cross Children’s Hospital.

"Great works are performed not by strength, but by perseverance"

Julian Antoniou

Technology Trust Services

Julian Antoniou is an IT audit and security professional with a BSc Hons in Cybersecurity from The Open University UK. Julian has completed various certifications in network security, risk management, and security awareness and is actively expanding his knowledge in IT auditing and compliance standards to support clients in achieving their compliance goals.
Beyond his professional work, Julian believes in the philosophy of “a healthy body, a healthy mind.” He sees discipline in physical health as complementary to discipline in professional development. Julian is fluent in English, has conversational proficiency in Afrikaans, and possesses a basic understanding of Greek.

"Excellence is never an accident. It is always the result of high intention, sincere effort, and intelligent execution."

Video

About Decrypt Compliance by Raymond Cheng

The People Behind Your Success

Every audit, every report, and every client win is powered by the people you see here. These snapshots reflect the dedication and collaboration that drive Decrypt’s work.

The People Behind Your Success

Every audit, every report, and every client win is powered by the people you see here. These snapshots reflect the dedication and collaboration that drive Decrypt’s work.

general question

Frequently Asked Questions

Feeling unsure about security compliance audits or curious how Decrypt Compliance can help? Check out our FAQs below to find answers to common questions. If you can’t find what you’re looking for, don’t hesitate to contact us directly!

 

Get Started

Ready to Get Certified and Close More Deals?

Tell us about your company and we’ll get back to you with a clear path to certification – including timeline and pricing.

Consultation form

Name(Required)

Raymond Cheng has dedicated his career to advancing the technology compliance profession. With nearly 10 years of experience in security and privacy compliance, including roles at EY and Global 500 companies like Google, Salesforce, and Tencent, Raymond founded Decrypt Compliance to foster trust and accelerate the global economy. He is an active contributor to his field, and serves on the Board of the Rotary Club of San Francisco Bay Area.

Raymond holds CPA.CITP, CISSP, CISA, CCSK, CIPP/E, and ISO 27001 Lead Auditor certifications. He is proficient in English, Cantonese, Mandarin, and Spanish.

"Growth is never by mere chance; it is the result of forces working together"

Lindisiwe (Lyndie) Dube has built her career in information security, compliance, and financial accounting, helping organizations navigate complex regulatory and security requirements. With a background in finance and technology compliance, she brings practical experience in risk, governance, and audit frameworks that underpin security programs. At Decrypt Compliance, Lyndie performs security and compliance audits, evaluating organizations’ controls against globally recognized frameworks. Lyndie holds CISA, ISO 27001 and ISO 42001 Lead Auditor certifications. She is also a member of the Rotary Club of Centurion, where she contributes to community initiatives focused on service, leadership, and social impact. She is proficient in English, IsiNdebele, and Zulu.

"There are no limits to what you can accomplish, except the limits you place on your own thinking."

Lee Govender is a dedicated IT Professional with experience in information security and compliance. Lee has worked in IT Audit and Advisory for major financial institutions in South Africa’s JSE Top 40 and in customer success where he assisted clients with ISO 27001 certifications and SOC 2 reports. Lee’s expertise spans both technical auditing and client relationship management.

Committed to continuous improvement, Lee holds a Microsoft Azure Fundamentals Certificate. Beyond his professional pursuits, Lee is passionate about animal welfare and actively volunteers with the Society for the Prevention of Cruelty to Animals.

"Nothing is impossible, the word itself says ‘I’m possible’!"

Tintswalo is an IT Audit and Compliance professional with experience across IT General Controls, SOX, SOC, and compliance-related audits. She combines her technical expertise with a keen analytical mindset to ensure organizations maintain strong control environments and meet regulatory standards. Tintswalo holds a BA in Forensic Science and Technology and has a background in Information Systems, which allows her to bridge the gap between IT systems and forensic analysis. Passionate about continuous learning and professional growth, she is committed to helping organizations navigate complex compliance landscapes.

“We are what we repeatedly do. Excellence, then, is not an act, but a habit.”

Jana Storm is a seasoned IT Audit and Risk Assurance professional with extensive experience at PwC, where she specialized in banking and capital markets. Jana’s unique people-oriented approach ensures organizations meet both regulatory and operational standards while fostering positive team environments.

Jana holds a BCom Honours in Management Accounting and is currently pursuing her CIMA qualification. Beyond her professional pursuits, she is passionate about mentoring colleagues and is an avid runner who believes in the power of physical movement to build mental resilience. Jana actively promotes workplace environments where people feel valued and engaged.

"If you want to go fast, go alone. If you want to go far, go together."

Sesona is a technology audit and assurance professional with a background in IT audit, technology risk, and analytics. He previously worked at Deloitte in the IT Audit and Assurance service line, where he supported external audits and third-party assurance engagements across the consumer, technology, and financial services industries. His work has involved evaluating technology controls, systems, and business processes, and he has a strong interest in understanding how technology, data, and governance interact in complex environments. Sesona enjoys approaching problems analytically and applying structured thinking to areas related to audit, compliance, and technology risk. He holds a BSc in Computer Science, is currently pursuing a BSc (Hons) in Computer Science, and is Microsoft Azure certified.

"Be yourself; everyone else is already taken"

Lauren Van Niekerk is a dedicated information security professional from the Asset Management Industry. She has experience across various frameworks including ISO, SOC 2, GDPR and CCPA. Lauren is obtaining her Masters in Information Security & Digital Forensics. As part of paying it forward, she regularly donates to the Red Cross Children’s Hospital.

"Great works are performed not by strength, but by perseverance"

Julian Antoniou is an IT audit and security professional with a BSc Hons in Cybersecurity from The Open University UK. Julian has completed various certifications in network security, risk management, and security awareness and is actively expanding his knowledge in IT auditing and compliance standards to support clients in achieving their compliance goals.

Beyond his professional work, Julian believes in the philosophy of “a healthy body, a healthy mind.” He sees discipline in physical health as complementary to discipline in professional development. Julian is fluent in English, has conversational proficiency in Afrikaans, and possesses a basic understanding of Greek.

"Excellence is never an accident. It is always the result of high intention, sincere effort, and intelligent execution."

Marcel Pillay is a seasoned audit professional with extensive experience in various industries including many of South Africa’s JSE Top 40 listed companies. Marcel is a Chartered Accountant (CA(SA)), Certified Information Systems Auditor (CISA) and Certified Internal Auditor (CIA). This broad range of experience across a multitude of industries gives him a unique perspective on risk and how technology can enable business operations while at the same time optimizing controls. Marcel spent 17 years at PwC and as an Associate Director in PwC’s Risk Assurance division, he specialized in SOC and ISAE audit reporting. Outside of the office, he spends his time cooking and baking for friends and family and believes balance is needed in all aspects of life.

"Anything worth doing, is worth doing right."

Mulisa Ramalisa is a Governance, Risk, and Compliance (GRC) and IT Audit professional with over four years of experience across financial services, technology, and risk control environments. She has worked with leading firms including EY and Deloitte, delivering risk-based audits, evaluating IT and application controls, and advising on governance and security frameworks.
Mulisa holds a BCom in Financial Sciences and a BCom Honours in Internal Auditing from the University of Pretoria and is CISA certified. Her credentials include Microsoft Azure Fundamentals, Identity & Access Administration, SAP Access Control, and data analytics certifications. Passionate about IT, cybersecurity and AI, Mulisa is committed to strengthening governance, enhancing control environments, and contributing meaningfully to the professional and business community.

“Do what you can, with what you have, where you are.”

Esther Mkize is an IT Audit professional with approximately five years of experience in technology risk and assurance, primarily within the banking and financial services sector, with exposure to other industries as well. Her experience includes application control reviews, IT infrastructure audits, and IT general controls, developed through her work at SNG Grant Thornton and PwC.

Esther is particularly interested in the intersection of technology risk and governance, and enjoys understanding how systems operate beneath the surface to identify, assess, and manage risks effectively.

Outside of her professional work, Esther values continuous learning and personal growth. She appreciates structured thinking, clear communication, and collaborative problem-solving in everything she does.

“Grounded, intentional, and always evolving”

Powered By EmbedPress