Is this your company? Buyers are checking Heartpace here. Claim heartpace.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.
Claim free
Heartpace
Sourced from public information. Not yet verified by the company.
Heartpace is SOC 2 compliant. Heartpace also holds ISO 27001, and GDPR.
About
Heartpace delivers a smooth, smart, and secure HRM System to the European market. Heartpace is part of Söderberg & Partners HR Tech business area, S & P Compensation & Benefits Consulting. The business area was established in early 2017 and offers consultancy services, resource support pension and insurance benefits tools, control of personnel costs, and employability. Söderberg & Partners was founded in 2004 and is one of Sweden’s leading independent advisors and intermediaries of insurance and financial products with one of the largest independent research departments in the Nordic region. T
Compliance & infrastructure
Documents
16- ISO 27001:2022 Certificate - British Assessment BureauPublic
- DORA ComplianceRequest
- IT Infrastructure and security presentationRequest
- Heartpace security structure version 27Request
- Heartpace SLARequest
- 11-ISMS Statement of ApplicabilityRequest
- PentestRequest
- Insurance certificateRequest
- ISMS 11 - Statement of Applicability (SoA) HeartpaceRequest
- Independent review of cryptographic key managementRequest
- AI Use PolicyRequest
- Pentest 2026.pdfRequest
- Heartpace - DORA Compliance Attestation.pdfRequest
Subprocessors
4- AAmazon Web Services · Cloud providerStockholm-Sweden, Dublin-Ireland
- IIntercom · Customer supportEU
- SStartdeliver AB · CSMEU
- HHetzner · Cloud providerGermany
Compliance leadership
The person who leads Heartpace's SOC 2 isn't listed yet. Claim this profile to add it.
Penetration test
Unknown. Heartpace's penetration test vendor isn't listed yet.
Claim this profile to add it.
This listing is partial
7/11 details · 64%SOC2C shows the verified essentials. 4 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.
- Auditorraises trustAdd the CPA firm that issued your SOC 2 so buyers can verify who signed it.
- Report dateraises trustAdd your most recent report period so buyers see how current your SOC 2 is.
- Renewal dateAdd your renewal window so buyers know your coverage is active.
- Security controlsConfirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.
Frequently asked
Is Heartpace SOC 2 compliant?
Is Heartpace ISO 27001 certified?
Is Heartpace GDPR compliant?
Can I use Heartpace's SOC 2 for a vendor risk assessment?
Is Heartpace penetration tested?
Does Heartpace have an ISO 27001 certificate?
Does Heartpace have a penetration test report?
Is Heartpace secure?
Does Heartpace have a bug bounty or vulnerability disclosure program?
Who are Heartpace's subprocessors?
Where does Heartpace host or store data?
Where is Heartpace's trust center or security page?
Where are your servers located?
Do you have an ISO security certificate?
Do you perform external penetration tests?
Is there an SLA for resolving identified security issues?
Do you encrypt data at rest?
I found a security bug. Do you have an established bug bounty program?
Is there an SLA for resolving identified security issues?
Are you DORA compliant?
Technology peers that completed SOC 2

Action1

ELJUN LLC

equipifi
