SOC 2 definition

SOC 2 means the AICPA System and Organizational Controls for Service Organizations – SOC 2: Reporting on an Examination of Controls at a Service Organization Relevant to Security, Availability, Processing Integrity, Confidentiality, or Privacy audit, as amended or superseded or replaced from time to time, or other modified or replacement or successor report.
SOC 2 means an audit that provides an opinion about controls at the service organization related to security, availability, processing integrity, confidentiality, or privacy to support users’ evaluations of their own system of internal control.

Examples of SOC 2 in a sentence

  • The University will utilize all invoicing and documentation, which relates to Kent State University’s final cost, and internal controls documentation required under the contract including, but not limited to any applicable audit or security assessment reports or certifications such as: SAS 70 or its replacement SSAE 16, SOC 2, or ISO 27001, and copies of any applicable corporate information security policies or other supporting documentation.

  • A SOC 2 Type 2 Report is not a Contractor requirement for this Contract.

  • A SOC 2 Type II Report is not a Contractor requirement for this Contract.

  • We have attained, and will maintain, SOC 1 and SOC 2 compliance, or its equivalent, for so long as you are timely paying for SaaS Services.

  • To the extent the Contractor or its subcontractors, affiliates or agents handles, collects, stores, disseminates or otherwise deals with State Data, the Contractor shall cause an SSAE 18 SOC 2 Type 2 audit report to be conducted annually.

  • For each calendar year during the term of this Agreement, upon sixty (60) calendar days of issuance but no later than the end of each calendar year, Vendor shall submit to Citizens via email to Citizens’ Contract Manager or designee a copy of its annual American Institute of Certified Public Accountants Service Organization Control (SOC) 1 type 2 report or SOC 2 type 2 report (for all Trusted Services Principles) relevant, as solely determined by Citizens, to the Services.

  • Supplier represents and warrants that it has a SOC 2 Type 2, ISO 27701 certification or other relevant information security audit performed within the past twelve (12) months.

  • If the requested audit scope is addressed in a SOC 1 or SOC 2, ISO, NIST, PCI DSS, HIPAA or similar audit report issued by a qualified third party auditor within the prior twelve months and Oracle provides such report to You confirming there are no known material changes in the controls audited, You agree to accept the findings presented in the third party audit report in lieu of requesting an audit of the same controls covered by the report.

  • The physical and environmental security controls are audited for SOC 2 Type II and ISO 27001 compliance, among other certifications.

  • Assessment reports such as the Federal Risk and Authorization Management Program (FedRAMP) certification, SOC 2 Type 2, SSAE 16, and ISO 27001 are preferred and offered solutions already meeting these requirements are requested to include these reports as part of their submission.


More Definitions of SOC 2

SOC 2 has the meaning set forth in Section 8.7(a).
SOC 2 means the reporting of non-financial business controls as they relate to security, availability, processing integrity, confidentiality, and privacy of a system.
SOC 2 means Service Organisation Controls 2. The SOC 2 reporting standard is an Audit opinion report over internal controls related to Information Technology. It is based around the Trust Principles of Security, Availability, Integrity of processing, Confidentiality and Privacy;
SOC 2 means the SOC for Service Organizations: Trust Services Criteria issued and maintained by the American Institute of Certified Public Accountants.
SOC 2 means a Service Organization Control 2 audit report which documents the audit of an entity’s internal IT controls relevant to the security, availability, processing integrity; confidentiality and/or privacy.
SOC 2 means defined criteria for managing customer data based on five “trust service principles”—security, availability, processing integrity, confidentiality and privacy “SOC3” is a simplified version of SOC2 report;

Related to SOC 2

  • CDSL means Central Depository Services (India) Ltd.

  • POPI means the Protection of Personal Information Act, 4 of 2013;

  • POPIA means the Protection of Personal Information Act, No 4 of 2013;

  • CM means City Manager of COE appointed in terms of Section 82 of the Local Government: Municipal Structures Act 117 of 1998

  • Dormitory means a building used in conjunction with an educational building for living quarters for seven or more students;

  • Uppermost aquifer means the geologic formation nearest the natural ground surface that is an aquifer, as well as lower aquifers that are hydraulically interconnected with this aquifer within the facility's property boundary.