Hey There, great to connect. I work with SaaS founders on the documentation side of compliance and risk.
I help prepare things like SOC 2 documentation, GDPR/privacy documentation, AI governance and AI Act documentation, risk assessments, vendor due-diligence documentation, policies, procedures, and compliance evidence packages.
The main situations I help with are when a SaaS company is:
• moving upmarket and dealing with enterprise security reviews
• preparing for SOC 2
• answering customer/vendor compliance questionnaires
• launching an AI product and needing AI governance documentation
• going through due diligence
• trying to formalize its compliance documentation before scaling
A common issue is that the company may already have processes and controls in place, but the documentation isn't organized well enough to demonstrate them. That can slow down enterprise deals and create unnecessary back-and-forth during reviews.
I don't implement technical controls or manage security systems — *I focus specifically on producing and organizing the documentation.
If you're building a SaaS and compliance is becoming part of your sales or operational process, happy to connect.
For more enquiry contact me at my email at
penelopeannekensington@gmail.com