SSAE 16

EFG Hits Digital Compliance and Data Security Head On with PCI DSS Certification and SSAE 18 SOC 2 Recertification

Retrieved on: 
Tuesday, March 22, 2022

The Certification by the Payment Card Industry Security Standards Council (PCI SSC) certification confirms protection of payment account data for merchants, service providers and financial institutions.

Key Points: 
  • The Certification by the Payment Card Industry Security Standards Council (PCI SSC) certification confirms protection of payment account data for merchants, service providers and financial institutions.
  • In addition, EFG has been recertified with the Service Organization Control (SOC 2) classification under the Statement of Standards for Attestation Engagements 18 (SSAE 18) guidelines.
  • EFG is a leader in the F&I industry, having achieved both SSAE 16 and SSAE 18 certifications ahead of its competition.
  • PCI Data Security Standards (PCI DSS) protect payment account data for merchants, service providers, and financial institutions throughout the payment lifecycle, removing the incentive for criminals to steal it.

Nelnet's Velocity System Maintains Effective Security Controls According to Recent SOC 1® and 2(SM) Reports for New Loan System

Retrieved on: 
Friday, July 23, 2021

The SOC 1 and 2SM achievements demonstrate NDS maintained effective internal controls over the design and operating effectiveness of its Nelnet Velocity system relevant to financial reporting, security, availability, and processing integrity.

Key Points: 
  • The SOC 1 and 2SM achievements demonstrate NDS maintained effective internal controls over the design and operating effectiveness of its Nelnet Velocity system relevant to financial reporting, security, availability, and processing integrity.
  • Organizations utilize SOC attestation reports to verify that vendor systems can deal with the high-risk operations of their business.
  • A SOC 2SMreport provides assurances about the effectiveness of controls related to security, availability, and processing integrity.
  • The completion and certification of SOC 1 and 2SMexaminations further proves Velocity's industry-leading privacy, confidentiality, process integrity, availability, and security capabilities."

Census Reverse ETL Platform Achieves SOC 2 Type 2 Compliance

Retrieved on: 
Wednesday, June 23, 2021

Meeting the SOC 2 Type 2 standard demonstrates Census's data-bridging technology delivers the same customer data security as the business application endpoints it supports.

Key Points: 
  • Meeting the SOC 2 Type 2 standard demonstrates Census's data-bridging technology delivers the same customer data security as the business application endpoints it supports.
  • AICPA SOC 2 defines the criteria for managing customer data based on the five trust principles: security, availability, processing integrity, confidentiality, and privacy.
  • With SOC 2 Type 2 compliance, customers can feel certain their data is secure through the last mile of their data stack.
  • "We built Census to be secure by design," said Bradley Buda, co-founder, and head of security for Census.

Dawex Successfully Completes SOC 2 Type I and SOC 3 Security and Availability Audit Certification

Retrieved on: 
Wednesday, June 9, 2021

Dawex , the leading data exchange and data marketplace technology company, today announced that it has successfully obtained the System and Organization Control (SOC) 2 Type I and SOC 3 certification.

Key Points: 
  • Dawex , the leading data exchange and data marketplace technology company, today announced that it has successfully obtained the System and Organization Control (SOC) 2 Type I and SOC 3 certification.
  • SOC 2 Type I and SOC 3 are standards guaranteeing the implementation of internal controls for security, availability, processing integrity, confidentiality, or privacy.
  • The SOC reports are awarded to Dawex to provide industry-wide recognition of conformity to stringent security standards, as set by the American Institute of Certified Public Accountants (AICPA).
  • The SOC 2 Type I & SOC 3 examination audits demonstrate our measures are aligned with worldwide industry standards and best practices of security and availability.

Vretta Achieves System and Organization Controls (SOC) Security Compliance Standards

Retrieved on: 
Monday, May 31, 2021

TORONTO, May 31, 2021 /PRNewswire/ - Vretta, industry-leading designers and developers of e-assessment and learning solutions, announced that it has successfully achieved its SOC 1 Type 2 and SOC 2 Type 2 security compliance standards.

Key Points: 
  • TORONTO, May 31, 2021 /PRNewswire/ - Vretta, industry-leading designers and developers of e-assessment and learning solutions, announced that it has successfully achieved its SOC 1 Type 2 and SOC 2 Type 2 security compliance standards.
  • System and Organization Controls (SOC), defined by the American Institute of Certified Public Accountants (AICPA) , are rigorous security compliance standards to validate that the technology systems of organizations are set up to assure security, availability, processing integrity, confidentiality, and privacy of customer data.
  • SOC 2 Type 2: Controls addressed by five Trust Service Principles: Privacy, Security, Availability, Processing Integrity, and Confidentiality.
  • The controls play an important role in the vendor management programs, internal corporate governance and risk, management processes, and regulatory oversight.

Vretta Achieves System and Organization Controls (SOC) Security Compliance Standards

Retrieved on: 
Monday, May 31, 2021

TORONTO, May 31, 2021 /PRNewswire/ --Vretta, industry-leading designers and developers of e-assessment and learning solutions, announced that it has successfully achieved its SOC 1 Type 2 and SOC 2 Type 2 security compliance standards.

Key Points: 
  • TORONTO, May 31, 2021 /PRNewswire/ --Vretta, industry-leading designers and developers of e-assessment and learning solutions, announced that it has successfully achieved its SOC 1 Type 2 and SOC 2 Type 2 security compliance standards.
  • System and Organization Controls (SOC), defined by the American Institute of Certified Public Accountants (AICPA) , are rigorous security compliance standards to validate that the technology systems of organizations are set up to assure security, availability, processing integrity, confidentiality, and privacy of customer data.
  • SOC 2 Type 2: Controls addressed by five Trust Service Principles: Privacy, Security, Availability, Processing Integrity, and Confidentiality.
  • To learn more about how Vretta is maintaining the security and integrity of their solutions, email [email protected] .

Proctorio Becomes SOC 2 Type 1 Compliant Proctoring Provider

Retrieved on: 
Friday, April 9, 2021

SCOTTSDALE, Ariz., April 9, 2021 /PRNewswire-PRWeb/ --After stringent security auditing in collaboration with A-LIGN , Proctorio has become the first learning integrity platform to successfully complete an independent SOC 2 Type 1 Audit.

Key Points: 
  • SCOTTSDALE, Ariz., April 9, 2021 /PRNewswire-PRWeb/ --After stringent security auditing in collaboration with A-LIGN , Proctorio has become the first learning integrity platform to successfully complete an independent SOC 2 Type 1 Audit.
  • This report is intended to identify any possible risks that could arise from interactions with Proctorio's learning integrity system, particularly surrounding system controls that Proctorio has designed, implemented, or operated.
  • "This was not a self-evaluation," said Mike Olsen, Founder and CEO of Proctorio.
  • In the coming months, Proctorio is also pursuing several other third-party security audits including SSAE 16, ISO 27001, and SOC 2 Type 2 and will also share those results publicly when they become available.

Silvervine Successfully Completes SOC 1, Type 2 Audit

Retrieved on: 
Tuesday, January 19, 2021

The audit was performed by 360 Advanced, Inc., a full-service IT assurance, compliance and security firm that specializes in integrated compliance solutions, including conducting SOC 1 examinations.

Key Points: 
  • The audit was performed by 360 Advanced, Inc., a full-service IT assurance, compliance and security firm that specializes in integrated compliance solutions, including conducting SOC 1 examinations.
  • The completion of the SOC 1 (SSAE 18) Type 2 examination exemplifies Silvervine Software's continued commitment to create and maintain the most stringent controls needed to ensure the highest quality and security of services provided to customers.
  • "Silvervine will be undergoing a SOC 2 audit later this year, which takes a deeper dive into security, availability and confidentiality.
  • The IT department currently builds to SOC 2 standards, and this audit will confirm these robust security and data protection protocols."

Renalogic Completes Service Organization Controls 2 (SOC 2) Report under AT-C Section 205

Retrieved on: 
Wednesday, December 16, 2020

18 (AT-C section 205, Examination Engagements) of the AICPA that was performed by an independent auditing firm.

Key Points: 
  • 18 (AT-C section 205, Examination Engagements) of the AICPA that was performed by an independent auditing firm.
  • Completion of the SOC 2 Type II examination indicates that selected Renalogic processes, procedures, and controls have been formally evaluated and tested by an independent accounting and auditing firm.
  • The examination included the company's controls related to the 2017 Trust Services Principles and Criteria for Security and Privacy.
  • Last month, Renalogic introduced CareINSIGHTS.ai as the company's next evolution of intervention powered by predictive modeling and artificial intelligence.

TierPoint Renews Key Industry Certifications, Completes SSAE 18 Compliance Audits

Retrieved on: 
Wednesday, December 2, 2020

TierPoint met SSAE 18 standards for SOC 1 Type II, SOC 2 Type II, and SOC 2 + HITRUST audits for all its data centers.

Key Points: 
  • TierPoint met SSAE 18 standards for SOC 1 Type II, SOC 2 Type II, and SOC 2 + HITRUST audits for all its data centers.
  • The SOC audits objectively evaluate the effectiveness of controls in place to address operations, compliance, and financial reporting.
  • Replacing the SSAE 16 standard, SSAE 18 is the latest auditing standard initiated by the American Institute of Certified Public Accountants (AICPA) in 2017.
  • "Security, privacy protection, and reliability are key to the success of our customers and a priority for our company," said TierPoint Chief Security Officer Paul Mazzucco.