SOC 2

American standard for service organisations reporting on control design and operational effectiveness.

SOC 2 is a widely recognised compliance framework for service providers (cloud, SaaS, hosting). It evaluates controls in five trust service categories: security, availability, processing integrity, confidentiality, and privacy.

SOC 2 reports (Type I and Type II) provide customers with assurance that their data is properly protected and managed by service providers.