IT and Business Insights for SMB Solution Providers

ScalePad Buys Compliance Automation Vendor ControlMap

The acquisition, ScalePad’s second already this year, adds governance, risk, and compliance software to a platform that already includes asset management, backup monitoring, and operational analytics solutions. By Rich Freeman

ScalePad has acquired ControlMap, a maker of cybersecurity compliance automation software for MSPs and MSSPs.

The acquisition, ScalePad’s second in a still young year, adds governance, risk, and compliance software to a growing platform that already includes MSP-focused asset management, backup monitoring, and operational analytics solutions.

Like those other products, ControlMap’s application is designed to accelerate and standardize a critical business process. According to ScalePad CEO Dan Wensley, many MSPs employ inefficient, labor-intensive workflows to certify end user compliance with regulations like HIPAA and CMMC; enforce cybersecurity frameworks from NIST, the Center for Internet Security, and others; and prepare for SOC 2 Type 1, SOC 2 Type 2, and ISO 27001 audits.

“We hear the conversations of MSPs controlling security on spreadsheets and managing those components vary manually,” he says, noting that data ControlMap collects can help businesses get cyber liability coverage more easily as well.

“Having the measurements and the capacity to ensure SMBs have what they need in place to have cyber insurance is a big component of the ControlMap story,” Wensley says.

The system will also give ScalePad’s other offerings a rich new source of security- and compliance-related data to draw from for business intelligence purposes. “We see a great opportunity to integrate those data streams to provide more value in each one of those applications’ swim lanes,” Wensley says.
Pallav Tandon, formerly ControlMap’s CEO, will remain with ScalePad as its first general manager of governance, risk, and compliance solutions.

ControlMap’s application comes with over 30 built-in connectors that automatically aggregate data on user account access, privileged access, MFA configuration, and assets such as databases and endpoints. Supported platforms include Amazon Web Services, Microsoft Azure, and Google Workspace, HR applications from ADP and others, and identity and access management systems like Azure Active Directory and Okta.

The system comes as well with over 30 pre-written compliance policy templates and more than 150 risk templates based on guidelines from NIST, CIS, OWASP, SANS, and others.

ScalePad accepted a non-controlling equity investment of undisclosed size from private equity firm Integrity Growth Partners in July 2021. Money from that transaction helped fund the ControlMap acquisition along with the vendor’s acquisition of backup monitoring vendor Backup Radar late in 2021 and its purchase last month of Cognition360, a maker of analytics software for MSPs recently included on ChannelPro’s Vendors on the Vanguard list for 2023

According to Wensley, ScalePad will announce multiple additional acquisitions early in the second quarter of the year. All of them will in various ways contribute to the company’s larger effort to build an integrated toolset of solutions designed to help MSPs in four areas: automation, standardization, boosting service capability, and increasing operational maturity.

Global spending on governance, risk and compliance will grow at a 13.8% CAGR through 2030 to nearly $135 billion, according to Grand View Research.

About the Author

Rich Freeman's picture

Rich Freeman is ChannelPro's Founding Editor

ChannelPro SMB Magazine

Get an edge on the competition

With each issue packed full of powerful news, reviews, analysis, and advice targeting IT channel professionals, ChannelPro-SMB will help you cultivate your SMB customers and run your business more profitably.