Common use of SOC 2 Clause in Contracts

SOC 2. A report on controls that may be relevant to security, availability, processing Integrity, confidentiality or privacy. These reports are intended to meet the needs of a broad range of users that need detailed information and assurance about the controls at a service organization relevant to security, availability, and processing integrity of the systems the service organization uses to process users’ data and the confidentiality and privacy of the information processed by these systems. These reports can play an important role in: • Oversight of the organization • Vendor management programs • Internal corporate governance and risk management processes • Regulatory oversight ⮚ Type 1 Report - Report on the fairness of the presentation of management’s description of the service organization’s system and the suitability of the design of the controls to achieve the related control objectives included in the description as of a specified date. ⮚ Type 2 Report - Report on the fairness of the presentation of management’s description of the service organization’s system and the suitability of the design and operating effectiveness of the controls to achieve the related control objectives included in the description throughout a specified period. (Auditor conducts testing)

Appears in 3 contracts

Samples: www.floridahealth.gov, pub-alachuacounty.escribemeetings.com, www.myflorida.com

AutoNDA by SimpleDocs

SOC 2. A report on controls that may be relevant to security, availability, processing Integrity, confidentiality or privacy. These reports are intended to meet the needs of a broad range of users that need detailed information and assurance about the controls at a service organization relevant to security, availability, and processing integrity of the systems the service organization uses to process users’ data and the confidentiality and privacy of the information processed by these systems. These reports can play an important role in: • Oversight of the organization • Vendor management programs • Internal corporate governance and risk management processes • Regulatory oversight Type 1 Report - Report on the fairness of the presentation of management’s description of the service organization’s system and the suitability of the design of the controls to achieve the related control objectives included in the description as of a specified date. Type 2 Report - Report on the fairness of the presentation of management’s description of the service organization’s system and the suitability of the design and operating effectiveness of the controls to achieve the related control objectives included in the description throughout a specified period. (Auditor conducts testing)

Appears in 1 contract

Samples: www.floridahealth.gov

AutoNDA by SimpleDocs
Time is Money Join Law Insider Premium to draft better contracts faster.