SOC2C

Is this your company? Buyers are checking Crucial Learning here. Claim cruciallearning.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.

Claim free
Crucial Learning logo

Crucial Learning

Trust level
Listed
Unverified

Sourced from public information. Not yet verified by the company.

Crucial Learning is SOC 2 compliant. Crucial Learning also holds NIST CSF.

Framework
SOC 2
Auditor
Last report
Renewal
View official trust center ↗

About

Welcome to the Crucial Learning Trust Center. Crucial Learning's mission is to improve the world by helping people improve themselves. Through our award-winning courses and best-selling books, we help people learn behaviors that have a disproportionate impact on outcomes - we call these behaviors crucial skills. This page acts as an overview of our data security and privacy posture and demonstrates our commitment to our clients worldwide to compliance and security. Here you can find details surrounding our certifications and security framework, request documentation, and view high-level detail

Compliance & infrastructure

NIST CSF
Hosting
AWS
Data handled
Customer personally identifiable informationThe collection of PII (Personally Identifiable Information) is limited to a Data Subject's name and email address.You may be visiting our website for a variety of reasons. For the purpose of this Privacy Policy, we will classify these reasons as (i) browsing, (ii) submitting forms, (iii) purchasing products and services and (iv) completing surveys. (Please note that not all activities may be available on our website at a given time.) For each different type of activity, we collect and store different types of data for different reasons. • Browsing: If you are simply browsing or navigating through our website, we collect information about your computer and the pages you visit on our website in the aggregate (not individual or personal information). This data is often referred to as clickstream or navigation data. We use this information for research, analysis and reporting so that we can improve our navigation, page structure and page content to help visitors find information more quickly and provide more value when they find what they are looking for on our website. • Submitting Forms: Certain pages of our website contain forms that allow you to request information about our services and solutions or to gain access to valuable resources (like white papers and research documents) in exchange for contact information. In completing one of these forms, you may be required to provide contact information, such as your name, phone number and/or email address. By filling out a form on this website, you are agreeing to our privacy policy. You are also acknowledging that your data may not be subject to EU regulations, like the GDPR, as this is a U.S. based company and website. • Purchasing: For purchasing in our online store or registering for events or courses, we will require you to create an account with us. We collect information in this account that enables us to complete your order and/or registration and streamline your purchasing process the next time you order from us. Furthermore, we will give you the ability to view and update this information if you so choose. • Completing Surveys: For surveys, we collect responses to help us improve various aspects of our business based on aggregate and individual feedback provided. These surveys are sent via opt-in marketing programs or are made available on our website for you to participate if you so choose.

Subprocessors

7
  • A
    AWS (Amazon Web Services) · IaaS (Infrastructure as a Service) Provider of our service offerings.
    Amazon Web Services, Inc., 410 Terry Avenue North, Seattle, Washington, 98109 USA
  • A
    Auth0 · Authentication Service
    AWS Data Center In The US
  • S
    Salesforce · Cloud-based CRM
    Salesforce makes heavy utilization of AWS resources but also processes data within their own data centers.
  • N
    NetSuite · Cloud-based ERP
    NetSuite processes transactions primarily within its cloud-based ERP system, utilizing dedicated data centers located across North America, Europe, and Asia-Pacific.
  • M
    Marketo · Marketing communication
    Marketo Engage data is processed in secure, top-tier cloud data centers operated by Adobe, primarily located in the United States (California, Virginia), United Kingdom, Netherlands, and Australia.
  • M
    Microsoft · Training course participant names and professional contact information.
  • B
    Box · A cloud content management and file storage platform.

Compliance leadership

The person who leads Crucial Learning's SOC 2 isn't listed yet. Claim this profile to add it.

Penetration test

Unknown. Crucial Learning's penetration test vendor isn't listed yet.

Claim this profile to add it.

This listing is partial

5/11 details · 45%

SOC2C shows the verified essentials. 6 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.

  • Auditorraises trust
    Add the CPA firm that issued your SOC 2 so buyers can verify who signed it.
  • Report dateraises trust
    Add your most recent report period so buyers see how current your SOC 2 is.
  • Renewal date
    Add your renewal window so buyers know your coverage is active.
  • Other certifications
    List your other frameworks (ISO 27001, HIPAA, PCI DSS) the way your trust center does.
  • Documents
    List the documents you share (SOC 2 report, SOC 3, pen-test summary, DPA) and whether each is public or on request.
  • Security controls
    Confirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Claim free to control your listing

Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.

Frequently asked

Is Crucial Learning SOC 2 compliant?
Crucial Learning is SOC 2 compliant. On SOC2C this listing is Listed.
Is Crucial Learning NIST CSF compliant?
According to Crucial Learning's public trust center, Crucial Learning is NIST CSF compliant. On SOC2C this listing is Listed.
Can I use Crucial Learning's SOC 2 for a vendor risk assessment?
Yes. Crucial Learning's SOC 2 status, frameworks, auditor, and renewal timing are on SOC2C for vendor risk and security reviews. Request the underlying report through SOC2C to complete your third-party risk file.
Is Crucial Learning penetration tested?
Crucial Learning hasn't listed its penetration testing on SOC2C yet. SOC 2 Type II programs typically include periodic third-party penetration tests; the company can add who performed theirs.
Is Crucial Learning secure?
Security isn't a single yes/no, but Crucial Learning is SOC 2 compliant. SOC2C verifies its compliance posture and shows how strongly each fact is proven.