SOC2C

Is this your company? Buyers are checking Ceros here. Claim ceros.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.

Claim free
Ceros logo

Ceros

Trust level
Listed
Unverified

Sourced from public information. Not yet verified by the company.

Ceros is SOC 2 Type II compliant. Ceros also holds ISO 27001.

Framework
Auditor
Last report
Renewal
View official trust center ↗

About

Security is built into the fabric of our products, team, infrastructure, and processes, so you can rest assured your data is safeguarded.

Compliance & infrastructure

Hosting
AWS

Documents

14

Subprocessors

28
  • A
    Amazon Web Services · Cloud Provider
    AWS US East (N. Virginia)
  • G
    Google Tag Manager · Tracking User Sign-ons
    United States
  • O
    OpenAI · AI Services
    United States
  • C
    Cloudflare · Content Delivery Network
    United States
  • A
    Anthropic · AI Service Provider
    United States
  • a
    appcues · User Tracking and Analytics
    Unites States
  • C
    ClickUp · Project Management Software
    United States
  • D
    Digital Ocean · Automated Pilot Signup
    United States
  • G
    Google Cloud (Google Vertex APIs) · AI Service Provider
    United States
  • G
    Grafana · System Monitoring
    United States
  • H
    Helicone · AI Traffic Routing and Debugging
    United States
  • I
    Intercom · Email and Chat Support
    United States
Show all 28 subprocessors
  • L
    Lacework · Network Security Monitoring
    United States
  • L
    LogRocket · User Tracking and Analytics
    United States
  • M
    Metronome · Usage-Based Billing
    United States
  • M
    Mixpanel · User Tracking and Analytics
    United States
  • O
    Okta · Identity provider
    United States
  • O
    Openrouter · AI Traffic Routing
    United States
  • P
    Pinecone · Vector Database
    United States
  • P
    Postmark · Engineering
    United States
  • R
    Remove.bg · Image Processing
    Austria
  • R
    Replicate · AI Image Generation
    United States
  • R
    Rollbar · Error Tracking Service
    United States
  • S
    Sentry · Cloud monitoring
    United States
  • S
    Stripe · Payment Processing
    United States
  • U
    Urlbox · Website Screenshot Service
    United States
  • X
    Xara · PDF Processing
    Germany
  • Z
    Zencoder · Video Transcoding
    United States

Compliance leadership

The person who leads Ceros's SOC 2 isn't listed yet. Claim this profile to add it.

Penetration test

Unknown. Ceros's penetration test vendor isn't listed yet.

Claim this profile to add it.

Recent updates

2025 SOC 2 type 2Jan 2026

The Ceros Service Organization Control (SOC) 2 Type 2 report for the period of September 1, 2024, to October 31, 2025 is now available in the "Resources" tab for review.

ISO/IEC 27001:2022 Certification RenewalOct 2025

Ceros has renewed its ISO/IEC 27001:2022 certification, demonstrating our ongoing commitment to maintaining the highest standards of information security. The certification, issued by Prescient Security LLC remains valid through November 18, 2027, and is subject to annual surveillance audits. By maintaining our ISO/IEC 27001:2022 certification, Ceros continues to provide our customers with confidence that we manage and protect data according to globally recognized security standards. The official certificate is available for review in the Resources section of our Trust Center.

Apache Tomcat CVE-2025-24813Apr 2025

Ceros has reviewed the details of the recently disclosed Apache Tomcat vulnerability (CVE-2025-24813). We would like to clarify that our systems have never used Apache Tomcat. As such, we are not impacted by this vulnerability. We remain dedicated to maintaining a secure environment and continuously monitoring for emerging security threats.

SOC 2 Type 2Jan 2025

The Ceros Service Organization Control (SOC) 2 Type 2 report for the period of September 1, 2023, to August 31, 2024 is now available in the "Resources" tab for review.

ISO 27001:2022Jan 2025

Ceros ISO 27001:2022 Certificate is now available for review.

This listing is partial

7/11 details · 64%

SOC2C shows the verified essentials. 4 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.

  • Auditorraises trust
    Add the CPA firm that issued your SOC 2 so buyers can verify who signed it.
  • Report dateraises trust
    Add your most recent report period so buyers see how current your SOC 2 is.
  • Renewal date
    Add your renewal window so buyers know your coverage is active.
  • Security controls
    Confirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Claim free to control your listing

Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.

Frequently asked

Is Ceros SOC 2 compliant?
Ceros is SOC 2 Type II compliant. On SOC2C this listing is Listed.
Is Ceros ISO 27001 certified?
According to Ceros's public trust center, Ceros is ISO 27001 certified. On SOC2C this listing is Listed.
Is Ceros SOC 2 Type I or Type II?
Ceros is SOC 2 Type II compliant. A Type II report covers how security controls operated over a period (typically 3 to 12 months), a stronger signal than a point-in-time Type I.
Can I use Ceros's SOC 2 for a vendor risk assessment?
Yes. Ceros's SOC 2 status, frameworks, auditor, and renewal timing are on SOC2C for vendor risk and security reviews. Request the underlying report through SOC2C to complete your third-party risk file.
Is Ceros penetration tested?
Yes — Ceros undergoes third-party penetration testing as part of its security program. The pentest vendor is listed on its SOC2C profile.