info@nexoprivacy.com +254 768200243 Mon - Sat | 24 Hours
Home Policies SOC 2 Type I & Type II
International · United States / Global

SOC 2 Type I & Type II

The AICPA Trust Services Criteria report demanded by enterprise buyers - a must-have for B2B SaaS.

Quick facts

  • Code: SOC2
  • Jurisdiction: United States / Global
  • Region: International
  • Enforcement:
    Loss of enterprise deals, contractual penalties
  • Official source

SOC 2 evaluates Security, Availability, Processing Integrity, Confidentiality and Privacy. We help SaaS and service organisations design controls that pass audit on the first attempt - and stay passing.


Key principles & obligations

Security
Availability
Processing Integrity
Confidentiality
Privacy
More in International

Related frameworks.

Global (Payment Card Industry)

PCI DSS v4.0

Mandatory technical and operational standard for any organisation that stores, processes or transmits cardholder data.

Read summary
Global

ISO/IEC 27701 - Privacy Information Management

Extends ISO/IEC 27001 with privacy-specific controls - the de-facto international certification for a Privacy Information Management System (PIMS).

Read summary
Global

ISO/IEC 27001:2022 - Information Security

The international standard for an Information Security Management System (ISMS) - increasingly demanded by enterprise buyers worldwide.

Read summary