SOC2C

Is this your company? Buyers are checking Gofmx Inc here. Claim gofmx.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.

Claim free
Gofmx Inc logo

Gofmx Inc

Trust level
Listed
Unverified

Sourced from public information. Not yet verified by the company.

Gofmx Inc is SOC 2 Type II compliant.

Framework
Auditor
Last report
Renewal
View official trust center ↗

About

FMX is a leading provider of Computerized Maintenance Management Systems (CMMS) that allows facilities, maintenance, and operations leaders to streamline their organizational processes, increase asset productivity, and track, manage, and improve the metrics that matter most to them. Our Software-as-a-Service (SaaS) solution has helped over 2,000 organizations optimize their operations and reach their goals. When it comes to site security, we've got you covered! Here at FMX, we know how busy your day-to-day operations can be, so we've made it our priority to make sure that you don't have to wor

Compliance & infrastructure

Hosting
AWSAzure
Data handled
Customer personally identifiable informationEmployee personally identifiable informationCredit card informationPublic domain dataBasic personally identifiable information (name and email address)

Documents

9

Subprocessors

23
  • M
    Microsoft Azure · Cloud provider
    United States
  • A
    Amazon Web Services · Cloud provider
    United States
  • B
    Bitbucket · Marketing
    United States
  • A
    Azure DevOps · Version control
    United States
  • C
    Cloudflare · Cloud provider
  • C
    Cloudways · Cloud provider
  • D
    Dealhub · Sales
    United States
  • F
    FMX · Customer support
    United States
  • G
    Gong · Sales
    United States
  • G
    Google Ads · Marketing
    United States
  • G
    Google Drive for desktop · Document management
  • G
    Google Workspace · Other
Show all 23 subprocessors
  • N
    New Relic · Data analytics
  • M
    Marketo · Marketing
  • S
    Salesforce.com · Sales
  • R
    RingCentral · Customer support
  • S
    Slack · Collaboration
  • Z
    ZenDesk · Customer support
  • Z
    Zapier · Engineering
  • V
    Vanta · Security
  • T
    Typeform · Engineering
    United States
  • T
    Twilio · Engineering
  • U
    Userpilot · Data analytics

Compliance leadership

The person who leads Gofmx Inc's SOC 2 isn't listed yet. Claim this profile to add it.

Penetration test

Unknown. Gofmx Inc's penetration test vendor isn't listed yet.

Claim this profile to add it.

This listing is partial

7/11 details · 64%

SOC2C shows the verified essentials. 4 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.

  • Auditorraises trust
    Add the CPA firm that issued your SOC 2 so buyers can verify who signed it.
  • Report dateraises trust
    Add your most recent report period so buyers see how current your SOC 2 is.
  • Renewal date
    Add your renewal window so buyers know your coverage is active.
  • Security controls
    Confirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Claim free to control your listing

Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.

Frequently asked

Is Gofmx Inc SOC 2 compliant?
Gofmx Inc is SOC 2 Type II compliant. On SOC2C this listing is Listed.
Is Gofmx Inc SOC 2 Type I or Type II?
Gofmx Inc is SOC 2 Type II compliant. A Type II report covers how security controls operated over a period (typically 3 to 12 months), a stronger signal than a point-in-time Type I.
Can I use Gofmx Inc's SOC 2 for a vendor risk assessment?
Yes. Gofmx Inc's SOC 2 status, frameworks, auditor, and renewal timing are on SOC2C for vendor risk and security reviews. Request the underlying report through SOC2C to complete your third-party risk file.
Is Gofmx Inc penetration tested?
Gofmx Inc hasn't listed its penetration testing on SOC2C yet. SOC 2 Type II programs typically include periodic third-party penetration tests; the company can add who performed theirs.
Can I get Gofmx Inc's SOC 2 report?
Gofmx Inc's SOC 2 report is available on request. Request access through SOC2C and we coordinate the company-side NDA and delivery.

Answers published by Gofmx Inc

Reproduced from Gofmx Inc's own trust center. These are the company's statements about its security practices — SOC2C has not tested or verified them, and they may have changed since we last read the page. Check the source ↗

Do you rely on one or more cloud service providers? If so, please confirm which controls are maintained by you and which controls are maintained by your management).
Yes, our cloud service provider, Microsoft Azure handles patch and log management for the network and operating system layers. We maintain control of patches and changes to the application as well as to our database service. We also use AWS for our email service, and maintain the same type of relationship.
Do you have a position or organization responsible for overseeing the company’s overall security program? If so, please describe the responsibilities of the position or organization.
Yes, this role is fulfilled by our Vice President of Engineering. Additionally, every FMX team member is tasked with protecting our customers’ data and privacy through proactive measures, fostering a security-aware company culture, and responding to security incidents immediately and with transparency.
Do you support Single Sign-On (SSO)?
We support the following single sign-on technologies: SAML2, WS-Federation, and OAuth for Google Apps.
Do you perform regular third-party penetration testing?
Yes, we perform a pentration test on an annual basis.
Do you perform security reviews of your application source code?
Yes, we incorporate a code review step into our normal development process for every significant code change. A component of this is validating adherence to web security best practices.

Business & Industrial peers that completed SOC 2