SOC2C

Is this your company? Buyers are checking Black Kite here. Claim blackkite.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.

Claim free
Black Kite logo

Black Kite

Trust level
Listed
Unverified

Sourced from public information. Not yet verified by the company.

Black Kite is SOC 2 Type II compliant. Black Kite also holds GDPR, ISO 27001, and CSA STAR.

Framework
Auditor
Last report
Renewal
View official trust center ↗

About

Black Kite is a non-intrusive intelligence-gathering platform that identifies critical vulnerabilities, data breaches, and can detect the likelihood of a ransomware attack with high fidelity data. It does not retain, reuse, store any specific information that is not already publicly available.

Compliance & infrastructure

Hosting
GCP
Data handled
Customer personally identifiable information

Documents

1

Subprocessors

5
  • G
    Google Cloud Platform · Cloud Hosting Platform
    United States
  • G
    Google Gemini · Platform Component
    United States
  • P
    Pendo · Product Heat Mapping
    United States
  • A
    Amazon · Sending emails regarding triggered workflows
    United States
  • S
    SendGrid · Email Service
    United States

Compliance leadership

The person who leads Black Kite's SOC 2 isn't listed yet. Claim this profile to add it.

Penetration test

Unknown. Black Kite's penetration test vendor isn't listed yet.

Claim this profile to add it.

Recent updates

Ongoing UpdatesDec 2024

From now on, Black Kite customers will have the ability to subscribe to our trust page and receive updates regarding Black Kite's security and compliance.

This listing is partial

7/11 details · 64%

SOC2C shows the verified essentials. 4 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.

  • Auditorraises trust
    Add the CPA firm that issued your SOC 2 so buyers can verify who signed it.
  • Report dateraises trust
    Add your most recent report period so buyers see how current your SOC 2 is.
  • Renewal date
    Add your renewal window so buyers know your coverage is active.
  • Security controls
    Confirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Claim free to control your listing

Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.

Frequently asked

Is Black Kite SOC 2 compliant?
Black Kite is SOC 2 Type II compliant. On SOC2C this listing is Listed.
Is Black Kite GDPR compliant?
According to Black Kite's public trust center, Black Kite is GDPR compliant. On SOC2C this listing is Listed.
Is Black Kite ISO 27001 certified?
According to Black Kite's public trust center, Black Kite is ISO 27001 certified. On SOC2C this listing is Listed.
Is Black Kite CSA STAR certified?
According to Black Kite's public trust center, Black Kite is CSA STAR certified. On SOC2C this listing is Listed.
Is Black Kite SOC 2 Type I or Type II?
Black Kite is SOC 2 Type II compliant. A Type II report covers how security controls operated over a period (typically 3 to 12 months), a stronger signal than a point-in-time Type I.

Answers published by Black Kite

Reproduced from Black Kite's own trust center. These are the company's statements about its security practices — SOC2C has not tested or verified them, and they may have changed since we last read the page. Check the source ↗

How does Black Kite gather data on my third parties?
Black Kite uses open source intelligence methods to gather data. This is accomplished using web crawlers and a variety of information feeds such as social media and dark-web forums.
What forms of personal data will Black Kite handle?
Because Black Kite uses public data to perform its service, it does not require any sensitive personal data from users. Users of the platform will need to provide a functional business email address to create an account. Additionally, users may sign up using their full name, or an alias if they would prefer.
How does Black Kite define Customer Data?
"Customer data" refers to any documents, files, or information uploaded to our platform by a customer for analysis or processing. This includes materials originating directly from the customer as well as documents they may have received from their own customers and subsequently uploaded to our platform. Such data is considered proprietary to the customer and is handled in accordance with our data privacy and security policies.
Do you train any models using my data?
As described in our Core AI Tenets, Black Kite never uses customer data to train any public or private models.
How does BK utilize AI within their platform?
Two ways: 1. Black Kite is revolutionizing OSINT data extraction with advanced AI and large language models (LLMs), enabling faster, more precise analysis. 2. With the upcoming update to our UniQuE Parser, we’re introducing a smarter, faster, and more efficient way to assess compliance documentation—without compromising your data privacy. For these solutions, Black Kite use Google Cloud Platform’s Vertex AI platform that includes the Gemini AI model.

Business & Industrial peers that completed SOC 2