SOC2C

Is this your company? Buyers are checking Gnosiscompanies.com here. Claim gnosisfreight.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.

Claim free
Gnosiscompanies.com logo

Gnosiscompanies.com

Trust level
Listed
Unverified

Sourced from public information. Not yet verified by the company.

Gnosiscompanies.com is SOC 2 Type II compliant.

Framework
Auditor
Last report
Renewal
View official trust center ↗

About

With the responsibility of handling visibility and execution data for global supply chains, Gnosis Freight is committed to the security and protection of customer and partner data, as well as our platform and infrastructure. Gnosis Freight implements comprehensive policies, practices, and controls as part of its enterprise security program.

Compliance & infrastructure

Hosting
AWSGCP

Documents

7

Subprocessors

5
  • A
    Amazon Web Services · Hosting Services
  • G
    Google Cloud · Hosting Services & Data Storage
  • P
    PlanetScale · Database Management
  • V
    Vercel · Development
  • F
    Frontegg · Identity & Authentication

Compliance leadership

The person who leads Gnosiscompanies.com's SOC 2 isn't listed yet. Claim this profile to add it.

Penetration test

Unknown. Gnosiscompanies.com's penetration test vendor isn't listed yet.

Claim this profile to add it.

This listing is partial

6/11 details · 55%

SOC2C shows the verified essentials. 5 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.

  • Auditorraises trust
    Add the CPA firm that issued your SOC 2 so buyers can verify who signed it.
  • Report dateraises trust
    Add your most recent report period so buyers see how current your SOC 2 is.
  • Renewal date
    Add your renewal window so buyers know your coverage is active.
  • Other certifications
    List your other frameworks (ISO 27001, HIPAA, PCI DSS) the way your trust center does.
  • Security controls
    Confirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Claim free to control your listing

Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.

Frequently asked

Is Gnosiscompanies.com SOC 2 compliant?
Gnosiscompanies.com is SOC 2 Type II compliant. On SOC2C this listing is Listed.
Is Gnosiscompanies.com SOC 2 Type I or Type II?
Gnosiscompanies.com is SOC 2 Type II compliant. A Type II report covers how security controls operated over a period (typically 3 to 12 months), a stronger signal than a point-in-time Type I.
Can I use Gnosiscompanies.com's SOC 2 for a vendor risk assessment?
Yes. Gnosiscompanies.com's SOC 2 status, frameworks, auditor, and renewal timing are on SOC2C for vendor risk and security reviews. Request the underlying report through SOC2C to complete your third-party risk file.
Is Gnosiscompanies.com penetration tested?
Gnosiscompanies.com hasn't listed its penetration testing on SOC2C yet. SOC 2 Type II programs typically include periodic third-party penetration tests; the company can add who performed theirs.
Can I get Gnosiscompanies.com's SOC 2 report?
Gnosiscompanies.com's SOC 2 report is available on request. Request access through SOC2C and we coordinate the company-side NDA and delivery.

Answers published by Gnosiscompanies.com

Reproduced from Gnosiscompanies.com's own trust center. These are the company's statements about its security practices — SOC2C has not tested or verified them, and they may have changed since we last read the page. Check the source ↗

Do you encrypt data at rest/in transit?
Yes, we encrypt data both at rest and in transit. Data at rest is encrypted using AES-256 encryption, and data in transit is protected using TLS 1.2 or higher to ensure secure transmission.
Want to report a potential security issue?
Please contact support@gnosisfreight.com
How do you handle data collection, storage, and access?
We handle data collection, storage and access with the utmost care, adhering to strict security and privacy protocols. Data is collected in compliance with legal and regulatory requirements, ensuring we have the necessary consent and authorization. It is stored securely, with encryption at rest using AES-256 encryption, and transmitted securely using TLS 1.2 or higher. Access to data is restricted to authorized personnel only, following the principle of least privilege. We use data solely for the purposes for which it was collected, in compliance with privacy policies and related agreements. Data is retained only as long as necessary to fulfill the intended purposes and comply with legal obligations, and secure deletion methods, such as cryptographic wiping, are used when data is no longer needed. Regular monitoring and auditing are conducted to ensure compliance with our data handling policies and to detect and address any potential security issues.
Do you support Single Sign-On (SSO)?
Yes, we support Single Sign-On (SSO). Our platform integrates with major identity providers, allowing users to authenticate securely using their existing enterprise credentials. We support SAML (Okta, Azure, Google, PingIdentity, jumpcloud, Custom SAML) and OpenID (Okta, Custom OpenID).
What security certifications does your platform have?
Our platform holds the following certifications: SOC2 Type 2 and CyberGRX Tier 2. These certifications demonstrate our commitment to maintaining high security standards and ensuring the protection of our customers' data.

Business & Industrial peers that completed SOC 2