Is this your company? Buyers are checking Armsrm here. Claim armsrm.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.
Claim free
Armsrm
Sourced from public information. Not yet verified by the company.
Armsrm is SOC 2 Type II compliant. Armsrm also holds NIST CSF, HIPAA, PCI DSS, and GDPR.
About
ARMStrong RM is the Largest Receivable Management Firm in North America ====================================================================================== ARMStrong Information Security, Privacy, and Compliance teams work together to build and maintain the trust of our members through visibility into our security posture and compliance readiness. Through our Trust Center we aim to demonstrate to both our members and prospective members that we have the processes and protocols in place to safeguard your data.
Compliance & infrastructure
Documents
29- Access Management PolicyRequest
- Asset Management PolicyRequest
- Business Continuity and Disaster Recovery PlanRequest
- Code Of Conduct And Corporate StandardsRequest
- Encryption And Cryptography PolicyRequest
- Data Management PolicyRequest
- Incident Response Policies and Procedures (including GDPR)Request
- Information Security Roles and ResponsibilitiesRequest
- Operations Security PolicyRequest
- Physical Security PolicyRequest
- Risk Management Policy and ProceduresRequest
- Secure Development PolicyRequest
- Third-Party Management PolicyRequest
- Backup & Recovery PolicyRequest
- Clear Screen and Desk PolicyRequest
- Data center And Server Rooms PolicyRequest
- Employee Identification PolicyRequest
- Firewall & Routers Security Administration PolicyRequest
- Information Security Exception Request ProcessRequest
- Internet Usage PolicyRequest
- IT Change Control PolicyRequest
- Mobile Device Security PolicyRequest
- Monitoring & Logging PolicyRequest
- Patch Management PolicyRequest
- Remote Working And Access PolicyRequest
- Privileged Account Management PolicyRequest
- AI Usage PolicyRequest
- Security Awareness Training and AcceptableRequest
- Information Security PolicyPublic
Subprocessors
24- SSalesforce · CRM platform and client relationship managementCloud, United States
- BBitDefender · Advanced endpoint threat protectionCloud, United States
- AAlienvault · Security Information and Event Management (SIEM)Cloud, United States
- CCodeTwo · Centralized email signature managementCloud, United States
- CCrimson Security · Security3rd Party Vendor
- MMicrosoft (Azure & 365) · Cloud hosting, productivity, identity managementCloud, United States
- OOffice 365 · Cloud hosting, productivity, identity managementCloud, United States
- KKnowBe4 · Security awareness & phishing simulationCloud, United States
- ZZoom · Communication platformCloud, United States
- CCisco Umbrella · DNS filtering, cloud-delivered threat protectionCloud, United States
- PPulseway · Remote monitoring and management (RMM)Cloud, United States
- IIT-Glue · IT documentation managementCloud, United States
Show all 24 subprocessorsShow fewer
- AAdminDroid Office 365 Reporter - Sign In · Microsoft 365 reporting and auditingARMStrong Data Center, United States
- AAmazon Web Services · Cloud hosting and data storage for certain applicationsCloud, United States
- FFreshservice · IT service management (ITSM) and ticketingCloud, United States
- SSpanning Backup · Backup and recovery for Microsoft 365 and SalesforceCloud, United States
- TTCN · Cloud-based contact center and outbound dialing platformCloud, United States
- TTransUnion · Phone number validation and DID verificationCloud, United State
- TTRX Services, LLC · Credit card payment processingCloud, United States
- UUS Signal · Data center and colocation servicesIllinois, United States
- VVanta · Continuous security monitoring and compliance automationCloud, United States
- VVeeam · Backup, disaster recovery, and replicationARMStrong Data Centers, United States
- VVMWare · Virtualization and infrastructure managementARMStrong Data Centers, United States
- ZZoomInfo · Business contact enrichment and prospect data intelligenceCloud, United States
Compliance leadership
The person who leads Armsrm's SOC 2 isn't listed yet. Claim this profile to add it.
Penetration test
Unknown. Armsrm's penetration test vendor isn't listed yet.
Claim this profile to add it.
This listing is partial
7/11 details · 64%SOC2C shows the verified essentials. 4 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.
- Auditorraises trustAdd the CPA firm that issued your SOC 2 so buyers can verify who signed it.
- Report dateraises trustAdd your most recent report period so buyers see how current your SOC 2 is.
- Renewal dateAdd your renewal window so buyers know your coverage is active.
- Security controlsConfirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.
Frequently asked
Is Armsrm SOC 2 compliant?
Is Armsrm NIST CSF compliant?
Is Armsrm HIPAA compliant?
Is Armsrm PCI DSS compliant?
Is Armsrm GDPR compliant?
Is Armsrm SOC 2 Type I or Type II?
Can I use Armsrm's SOC 2 for a vendor risk assessment?
Is Armsrm penetration tested?
Is Armsrm secure?
Does Armsrm have a bug bounty or vulnerability disclosure program?
Who are Armsrm's subprocessors?
Where does Armsrm host or store data?
Where is Armsrm's trust center or security page?
How is client data protected at ARMStrong?
Do you encrypt data at rest?
What endpoint security solutions do you use?
How is physical security handled for your infrastructure?
Are you SOC 1/2 or PCI compliant?
Do you support HIPAA compliance?
How do you ensure regulatory compliance for data processing?
Where is client data stored?
Do you allow international access to your systems?
Who has access to my data?
What systems and platforms does ARMStrong use?
Do you use AI or machine learning on client data?
Business & Industrial peers that completed SOC 2

Newsworthy.ai

Octopus Deploy

1099-Prep
