• HOME
  • CATEGORIES

    • CATEGORIES

    • Application Development

      • Observability Platforms
      • Integrated Development Environment (IDE) Software
      • Enterprise Agile Planning Tools
      • Integration Platform as a Service
      • AI-Augmented Software Testing Tools
      • View All
    • Artificial Intelligence

      • AI Code Assistants (Transitioning to AI Coding Agents)
      • Generative AI Knowledge Management Apps/General Productivity
      • AI Application Development Platforms
      • Conversational AI Platforms
      • Artificial Intelligence Applications in IT Service Management (Transitioning to AI Applications in IT Service Management)
      • View All
    • Cloud Computing

      • Backup and Data Protection Platforms
      • Cloud Database Management Systems
      • Strategic Cloud Platform Services
      • Server Virtualization (Transitioning to Server Virtualization Platforms)
      • Hybrid Cloud Storage
      • View All
    • Customer Relationship Management

      • Contact Center as a Service
      • CRM Customer Engagement Center
      • Digital Experience Platforms
      • Web Content Management
      • Field Service Management
      • View All
    • Data and Analytics

      • Analytics and Business Intelligence Platforms
      • Data Science and Machine Learning Platforms (Transitioning to AI Platforms For Data Science and Machine Learning)
      • Data Integration Tools
      • Process Mining Platforms (Transitioning to Process Intelligence Platforms)
      • Metadata Management Solutions
      • View All
    • Education

      • Manager and Leadership Training
      • Corporate Learning Technologies
      • eLearning Authoring Tools
      • Higher Education Student Information System Software as a Service (Transitioning to Higher Education SaaS Student Information Systems)
      • Digital Learning Content Providers
      • View All
    • Enterprise Networking and Communications

      • Unified Communications as a Service
      • Global WAN Services
      • Edge Distribution Platforms
      • Intranet Packaged Solutions
      • SD-WAN
      • View All
    • Finance

      • Expense Management Software
      • Financial Close and Consolidation Solutions
      • Financial Planning Software
      • Cloud Financial Management Tools
      • Accounts Payable Applications
      • View All
    • Healthcare and Life Sciences

      • Medical Device Security Solutions (Transitioning to Medical Device Risk Management Platforms)
      • Health Navigation Solutions
      • Claim Editor Software
      • Revenue Cycle Management Software (Transitioning to Revenue Cycle Management Solutions)
      • Digital Health Platforms (Transitioning to Healthcare Provider Industry Cloud Platforms)
      • View All
    • Human Resources

      • Employee Recognition and Reward Systems
      • Workforce Management Applications (Transitioning to Workforce Management (WFM) Technology)
      • Digital Employee Experience Management Tools
      • Talent Acquisition (Recruiting) Suites
      • Cloud HCM Suites for Regional and/or Sub-1,000 Employee Enterprises
      • View All
    • IT Infrastructure and IoT

      • Enterprise Wired and Wireless LAN Infrastructure (Transitioning to Enterprise Wired and Wireless LAN)
      • IT Service Management Platforms
      • Endpoint Management Tools
      • Container Management
      • Infrastructure Monitoring Tools
      • View All
    • IT Security

      • Endpoint Protection Platforms
      • Email Security
      • Managed Detection and Response
      • Security Information and Event Management
      • Security Awareness Computer-Based Training
      • View All
    • Legal

      • Contract Life Cycle Management
      • Electronic Signature
      • Governance, Risk and Compliance Tools, Assurance Leaders
      • Compliance Monitoring Solutions
      • Corporate Governance Services
      • View All
    • Manufacturing

      • Enterprise Asset Management Software
      • Manufacturing Execution Systems
      • Global Industrial IoT Platforms
      • PLM Software in Discrete Manufacturing Industries
      • Computer-Aided Design (CAD) Software
      • View All
    • Marketing

      • Video Editing Software
      • Email Marketing
      • Multichannel Marketing Hubs
      • Voice of the Customer Platforms
      • Customer Data Platforms
      • View All
    • Productivity and Collaboration

      • Document Management
      • Collaborative Work Management
      • Visual Collaboration Applications
      • Knowledge Management (KM) Software
      • Adaptive Project Management and Reporting
      • View All
    • Public Sector and Government

      • Government ERP Solutions
      • Government Budgeting and Planning Solution
      • Cloud-Based ERP for U.S. Local Government
      • Citizen Service Delivery
      • Government Contracting Software
      • View All
    • Retail

      • Digital Commerce
      • Digital Commerce Payment Vendors (Transitioning to Digital Commerce Payment Platforms)
      • Retail Workforce Management Applications (Transitioning to Retail Workforce Management Technology)
      • Retail Assortment Management Applications: Long Life Cycle Products
      • Digital Shelf Analytics
      • View All
    • Sales

      • Revenue Enablement Platforms
      • Configure, Price and Quote Applications
      • Sales Force Automation Platforms (Transitioning to CRM Sales Platforms)
      • Revenue Intelligence (Transitioning to Revenue Action Orchestration)
      • Sales Performance Management
      • View All
    • Supply Chain Management

      • Supply Chain Planning Solutions
      • Transportation Management Systems
      • Real-Time Transportation Visibility Platforms
      • Warehouse Management Systems
      • Supply Chain Strategy, Planning and Operations Consulting
      • View All
    • Utilities

      • Geospatial Information Systems for Energy and Utilities
      • Mobile Workforce Management Software for Utilities (Transitioning to Mobile Workforce Management Solutions for Power and Utilities)
      • Energy Management and Optimization Systems
      • Energy Trading and Risk Management
      • Advanced Distribution Management Systems
      • View All
    • Browse All Categories
  • FOR VENDORS

    • FOR VENDORS

    • Log In to Vendor Portal
    • Get Started
  • REVIEWS

    • REVIEWS

    • Write a Review
    • Product Reviews
    • Vendor Directory
    • Product Comparisons
  • GARTNER PEER COMMUNITY™
  • GARTNER.COM
  • Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQPrivacyTerms of Service
    ©2026 Gartner, Inc. and/or its affiliates.
    All rights reserved.
  • Categories

      • Application Development
      • Artificial Intelligence
      • Cloud Computing
      • Customer Relationship Management
      • Data and Analytics
      • Education
      • Enterprise Networking and Communications
      • Finance
      • Healthcare and Life Sciences
      • Human Resources
      • IT Infrastructure and IoT
      • IT Security
      • Legal
      • Manufacturing
      • Marketing
      • Productivity and Collaboration
      • Public Sector and Government
      • Retail
      • Sales
      • Supply Chain Management
      • Utilities
      Browse All Categories

      Application Development

      69 markets
      • Observability Platforms
      • Integrated Development Environment (IDE) Software
      • Enterprise Agile Planning Tools
      • Integration Platform as a Service
      • AI-Augmented Software Testing Tools
      • API Management
      • Enterprise Low-Code Application Platforms
      • Robotic Process Automation
      • Business Orchestration and Automation Technologies
      • Business Process Automation Tools
      • DevOps Platforms (Transitioning to DevSecOps Platforms)
      • Enterprise Architecture Tools
      • Custom Software Development Services
      • Code Review Tools
      • Domain Registrars
      • Digital Adoption Platforms
      • Game Engine Software
      • Website Builders
      • Public Cloud IT Transformation Services (Transitioning to Public Cloud Optimization and Transformation Services)
      • Developer Productivity Insight Platforms
      • API Generation Software
      • AI Agents for Application Developers
      • Feature Management
      • Application Platforms (Transitioning to Cloud-Native Application Protection Platforms)
      • Application Crowdtesting Services
      • Prototyping Software
      • Mobile App Analytics
      • Test Data Management
      • Virtual Reality Development Software
      • Green Software Engineering
      • Application Integration Platforms
      • Application Testing Services, Worldwide (Transitioning to Quality Engineering Services)
      • Event Brokers
      • AI-Augmented Code Modernization Tools
      • Independent Third-Party Software Support of Megavendors
      • Microsoft 365 Implementation and Support Services
      • Application Development Life Cycle Management (Transitioning to DevOps Platforms)
      • Digital Twin of an Organization Platforms
      • BPM-Platform-Based Case Management Frameworks
      • Microsoft Product Support Services
      • Product Roadmapping Tools for Software Engineering
      • AI Agent Development Platforms for Software Engineering
      • Application Composition Platform
      • Multiexperience Development Platforms
      • Application Portfolio Management Tools
      • Internal Developer Portals
      • Load Testing Tools
      • Mobile Development Frameworks
      • Cloud Development Environments
      • B2B Gateway Software
      • SAP S/4HANA Application Services, Worldwide (Transitioning to Cloud ERP Services)
      • Blockchain Consulting and Proof-of-Concept Development Services
      • Citizen Application Development Platforms
      • Mobile Application Testing Services
      • API and MCP Testing Tools
      • Value Stream Management Platforms
      • Oracle Cloud Application Services, Worldwide (Transitioning to Cloud ERP Services)
      • SAP Application Services, Worldwide
      • SAP SuccessFactors Service Providers (Transitioning to Cloud ERP Services)
      • Service Mesh
      • Business-Outcome-Driven Enterprise Architecture Consulting (Retired)
      • Oracle Application Services, Worldwide (Transitioning to Cloud ERP Services)
      • Rapid Mobile App Development Tools
      • SAP Selective Test Data Management Tools
      • Augmented Reality Development Software
      • Blockchain as a Service
      • Mobile Application Management (Transitioning to Endpoint Management Tools)
      • Mobile Back-End Services
      • R&D Outsourcing Providers
      View More
  • For Vendors

    • Log In to Vendor Portal 

    • Get Started 

  • Write a Review

Join / Sign In
  1. Home
  2. /
  3. Schellman Compliance and Attestation Services
Logo of Schellman Compliance and Attestation Services

Schellman Compliance and Attestation Services

bySchellman
in Organization Security Certification Services
5.0

Overview

Service Information on Schellman Compliance and Attestation Services

Updated 13th October 2025

What is Schellman Compliance and Attestation Services?

Schellman Compliance and Attestation Services is a service aimed at assisting businesses in managing regulatory compliance and verifying adherence to industry standards. The service covers a range of assessments and audits including SOC reports, ISO certifications, PCI DSS evaluations, FedRAMP authorizations, and cloud security reviews. It is designed to help organizations identify and address risks, confirm operational effectiveness, and ensure alignment with specific compliance frameworks. By providing third-party examination and validation, the service helps organizations demonstrate conformity to governance, risk management, and compliance requirements set by regulators and stakeholders.

Schellman Compliance and Attestation Services Pricing

Schellman Compliance and Attestation Services are structured with pricing that varies based on the scope and complexity of each engagement Such services are typically billed on a project or engagement basis with costs influenced by factors such as industry standards required and the level of assurance or certification being pursued

Overall experience with Schellman Compliance and Attestation Services

Principal, Risk Management
50M - 250M USD, Services (non-Government)
FAVORABLE

“Come to Schellman for their Expertise and Excellence....Stay for their Customer Service”

5.0
Aug 4, 2025
I can confidently say that Schellman is the gold standard in information security auditing services. Their subject matter expertise is expansive and their work is exceptional. The cherry on top is the genuine nature with which they carry out their work. I truly enjoy my time with my Schellman team.
Infosec Manager
50M - 250M USD, Telecommunication
CRITICAL

“Easy, not easy to work with”

3.0
Dec 14, 2017
The pre-engagment is a little complex. They are not very flexible with dates or anything else for that matter. The engamenet and testing is really great. The testers during the years have been on-point, knowledgeable and great. The draft and final report is always a challenge to get. Although the company has been notified of our payment workflow, there is always a hiccup here or there to get it to the finish line. The post engamenent is smooth. They are flexible and fast to start the engamenet for the next year. Not very flexible with pricing. At this point, there are cheaper and easier vendors to work with.

About Company

Company Description

Updated 4th March 2024

Schellman offers attestation and compliance services worldwide. The company holds numerous professional accreditations such as PCI Qualified Security Assessor, ISO Certification Body, HITRUST CSF Assessor, and FedRAMP 3PAO. Schellman focuses on blending specialized knowledge with real-world experience, providing high-quality service while ensuring independence. Its method is designed to foster enduring relationships, allowing clients to fulfill varied compliance objectives under one project team.

Company Details

Updated 26th February 2025
Company type
Private
Year Founded
2002
Head office location
Tampa, United States
Number of employees
201 - 500
Website
http://www.schellman.com

Do You Manage Peer Insights at Schellman?

Access Vendor Portal to update and manage your profile.

Key Insights

A Snapshot of What Matters - Based on Validated User Reviews

Reviewer Insights for: Schellman Compliance and Attestation Services
Performance of Schellman Compliance and Attestation Services Across Market Features

Schellman Compliance and Attestation Services Likes & Dislikes

Like

Their expertise shines through it both their deliverables and the way they continually push our organization to mature year after year.

Like

It is cheap and the testers are knowledgeable and reasonable.

Like

Schellman conducts all 6 audit simultaneously and allows one upload of one piece evidence can be used across all 6 audits, by 6 different auditors. If there is a question on a piece of evidence, they will coordinate their question(s) and only 1 auditor would reach out to us. This is instead of up to 6 different auditors all asking the same questions. As we are becoming a global organization, I am finding out from our teammates in the rest of the world that other certification bodies do not do this. I also like the online application. It paints a really good picture of our audits and allows for communication with the auditor directly on a piece of evidence or on a specific request. Also, it will show both the auditor and auditee previous years communication/evidence for each control. So really there isn't a lot of back and forth as all parties have the necessary information available to them with a click. In the tool, there is what I term as an Executive Management dashboard. Breaking everything our in multiple ways. Either by audit, evidence request and department. It allows me to share the high level picture with all departments management as to the status of each audit and requests. It shows all requests that have been accepted, submitted and not reviewed, kicked back to us for more clarification or ones we haven't started working on yet.

Dislike

Nothing comes to mind.

Dislike

They are busy this time of the year and the over allocate resources. So the draft and final report delivery is always a challenge.

Dislike

They do not cover all ISO standards currently, although are working on obtaining the ones that are important for us. For billing purposes, there are two separate companies, so twice the paperwork up front. Occasionally will take a little longer to send final reports out.

Top Schellman Compliance and Attestation Services Alternatives

Logo of MegaplanIT Organization Security Certification Services
1. MegaplanIT Organization Security Certification Services
4.7
(12 Ratings)
Logo of BSI Professional Services
2. BSI Professional Services
4.9
(3 Ratings)
Logo of KPMG IT Attestation Services
3. KPMG IT Attestation Services
4.2
(2 Ratings)
View All Alternatives

Peer Discussions

Schellman Compliance and Attestation Services Reviews and Ratings

5.0

(33 Ratings)

Rating Distribution

5 Star
94%
4 Star
3%
3 Star
3%
2 Star
0%
1 Star
0%
Why ratings and reviews count differ?

Customer Experience

Evaluation & Contracting

4.8

Planning & Transition

4.9

Delivery & Execution

4.9

Service Capabilities

4.9

Filter Reviews
Sort By:
Most helpful
Last 12 Months
Star Rating
Reviewer Type
Reviewer's Company Size
Reviewer's Industry
Reviewer's Region
Reviewer's Job Function
  • Principal, Risk Management
    50M-1B USD
    Services (non-Government)
    Review Source

    Come to Schellman for their Expertise and Excellence....Stay for their Customer Service

    5.0
    Aug 4, 2025
    I can confidently say that Schellman is the gold standard in information security auditing services. Their subject matter expertise is expansive and their work is exceptional. The cherry on top is the genuine nature with which they carry out their work. I truly enjoy my time with my Schellman team.
  • Principal Quality Manager
    1B-10B USD
    Miscellaneous
    Review Source

    Auditing in in 2025 and beyond

    5.0
    Apr 10, 2025
    Schellman is very flexible for our challenging audit needs. Constantly working with us in our ever changing environment.
  • CIO
    50M-1B USD
    Software
    Review Source

    Experiencing a Strategic Partnership with Schellman

    5.0
    Apr 15, 2025
    Schellman is a true partner in every sense of the word. They work closely with us on the required parts of assessments and certifications, and this is always solid and effective (as enjoyable as compliance work can be :)). But more importantly, they help us set strategy, providing expert feedback and advice on emerging standards and marketplace changes. Whether bread-and-butter ISO 27001 certifications and Type 2 SOC 2 examinations, or additional services such as NIST SP 800-171 / CMMC, or looking ahead to our possible work towards FedRAMP or ISO 42001, they are always happy to work with us to not only do the work, but also ensure that we do the right work at the right time. A genuine pleasure to work with.
  • CHIEF INFORMATION SECURITY OFFICER
    10B+ USD
    Banking
    Review Source

    Schellman & Co. Have a Mature and Easy Process

    5.0
    Apr 14, 2025
    They are hyper-focused on the customer. They have mature, streamlined, and effective delivery capabilities. The people performing the service and the people managing them have great communication skills. They also have a very easy to use user portal that is intuitive to use.
  • Director of Security Compliance
    50M-1B USD
    Services (non-Government)
    Review Source

    Schellman Makes a Great Case for Putting All of Your Security Service Eggs in One Basket

    5.0
    Apr 17, 2025
    Working with Schellman on the assessments services to date has been an exceptional experience.
Showing Result 1-5 of 33

Recommended Gartner Insights

  • Market Guide for Organization Security Certification Services

Gartner Peer Insights content consists of the opinions of individual end users based on their own experiences, and should not be construed as statements of fact, nor do they represent the views of Gartner or its affiliates. Gartner does not endorse any vendor, product or service depicted in this content nor makes any warranties, expressed or implied, with respect to this content, about its accuracy or completeness, including any warranties of merchantability or fitness for a particular purpose.

This site is protected by hCaptcha and its Privacy Policy and Terms of Use apply.


Software reviews and ratings for EMMS, BI, CRM, MDM, analytics, security and other platforms - Peer Insights by Gartner
Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQsPrivacyTerms of Use

©2026 Gartner, Inc. and/or its affiliates.

All rights reserved.