SOC2C

Brick River security & compliance

An overview of Brick River's security posture — compliance, penetration testing, subprocessors, and data handling — verified on SOC2C (Listed).

SOC 2 statusSOC 2 · Listed
FrameworksNIST CSF
Penetration testNot listed
Subprocessors11 listed
HostingAzure
Trust centerView

Security questions about Brick River

Is Brick River secure?
Security isn't a single yes/no, but Brick River is SOC 2 compliant. SOC2C verifies its compliance posture and shows how strongly each fact is proven.
Does Brick River have a bug bounty or vulnerability disclosure program?
Brick River hasn't listed a bug bounty or vulnerability disclosure program on SOC2C. Many companies accept security reports at security@brickriver.com or via a /security page.
Who are Brick River's subprocessors?
Brick River lists 11 subprocessors on its trust center, including Microsoft Azure, Cloudflare, Azure DevOps, Entra (Office 365), Figma. Buyers use this for fourth-party risk review.
Where does Brick River host or store data?
Brick River hosts on Azure, and handles Customer personally identifiable information, Employee personally identifiable information, Credit card information, Personal health information. Data residency details are on its trust center.
Where is Brick River's trust center or security page?
Brick River's trust center is at https://trust.brickriver.com. Its verified SOC 2 status, frameworks, and documents are summarized on its SOC2C profile.

See Brick River's full SOC 2 profile →