SOC2C

Is this your company? Buyers are checking hellotilt.com here. Claim hellotilt.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.

Claim free
hellotilt.com logo

hellotilt.com

Trust level
Listed
Unverified

Sourced from public information. Not yet verified by the company.

hellotilt.com is SOC 2 Type II compliant.

Framework
Auditor
Last report
Renewal
View official trust center ↗

About

Tilt's leave management system makes navigating critical life moments easy with our tech, and more human with our hearts. Tilt’s tech-powered human-centric approach means you can leave the leave management to us. The only leave management solution that manages all leave types across the US.

Compliance & infrastructure

Hosting
AWS
Data handled
Employee personally identifiable informationEmployee contact information, state of residenceDate of hire, historical leave of absence dataEmployee social security numbersEmployee personal health information

Documents

4

Subprocessors

16
  • A
    Amazon Web Services · aws
    USA
  • G
    Google · gsuiteadmin
    USA
  • A
    Atlassian
    USA
  • S
    Slack · slack
    USA
  • K
    Kustomer
    USA
  • T
    Twilio
    USA
  • G
    GitHub · github
    USA
  • Z
    Zoom
    USA
  • H
    HubSpot · hubspot
    USA
  • P
    Pendo.io Inc.
    USA
  • S
    Snowflake
    USA
  • D
    Datadog
    USA
Show all 16 subprocessors
  • H
    Hevo Data
    USA
  • D
    DocuSeal
    USA
  • M
    Merge
    USA
  • O
    OpenAI
    USA

Compliance leadership

The person who leads hellotilt.com's SOC 2 isn't listed yet. Claim this profile to add it.

Penetration test

Unknown. hellotilt.com's penetration test vendor isn't listed yet.

Claim this profile to add it.

This listing is partial

6/11 details · 55%

SOC2C shows the verified essentials. 5 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.

  • Auditorraises trust
    Add the CPA firm that issued your SOC 2 so buyers can verify who signed it.
  • Report dateraises trust
    Add your most recent report period so buyers see how current your SOC 2 is.
  • Renewal date
    Add your renewal window so buyers know your coverage is active.
  • Other certifications
    List your other frameworks (ISO 27001, HIPAA, PCI DSS) the way your trust center does.
  • Security controls
    Confirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Claim free to control your listing

Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.

Frequently asked

Is hellotilt.com SOC 2 compliant?
hellotilt.com is SOC 2 Type II compliant. On SOC2C this listing is Listed.
Is hellotilt.com SOC 2 Type I or Type II?
hellotilt.com is SOC 2 Type II compliant. A Type II report covers how security controls operated over a period (typically 3 to 12 months), a stronger signal than a point-in-time Type I.
Can I use hellotilt.com's SOC 2 for a vendor risk assessment?
Yes. hellotilt.com's SOC 2 status, frameworks, auditor, and renewal timing are on SOC2C for vendor risk and security reviews. Request the underlying report through SOC2C to complete your third-party risk file.
Is hellotilt.com penetration tested?
Yes — hellotilt.com undergoes third-party penetration testing as part of its security program. The pentest vendor is listed on its SOC2C profile.
Does hellotilt.com have a penetration test report?
hellotilt.com publishes a penetration test summary on its trust center. You can request access to it through SOC2C.

Answers published by hellotilt.com

Reproduced from hellotilt.com's own trust center. These are the company's statements about its security practices — SOC2C has not tested or verified them, and they may have changed since we last read the page. Check the source ↗

Do you support Single Sign-On (SSO)?
Yes! Check out our Tilt Help Center for articles on SSO setup instructions. We also have Okta SSO setup instructions.
Are customers expected to host an SFTP internally?
Nope! You can set up an SFTP file feed between Tilt and your HRIS or payroll system. If you choose to send Tilt additional data after initial implementation, we will use SFTP. We've even written up some handy SFTP setup instructions.
Do you have a list of your current access controls?
Our access controls are listed in our SOC 2 Type II report. We will provide current customers access to the SOC 2 report upon the customer’s request.
Where can I access Tilt's most recent SOC 2 Type II report?
Our most recent complete SOC 2 Type II report is available in the “Resources” tab of the Tilt Trust Center.
Can Tilt provide a HIPAA-compliant report, or a BAA?
Tilt’s services are not subject to regulation under HIPAA as a covered entity or a business associate entity. Tilt functions as an extension of the employer's HR team.

Business & Industrial peers that completed SOC 2