SOC2C

Is this your company? Buyers are checking iManage LLC here. Claim imanage.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.

Claim free
iManage LLC logo

iManage LLC

Trust level
Listed
Unverified

Sourced from public information. Not yet verified by the company.

iManage LLC is SOC 2 Type II compliant. iManage LLC also holds ISO 27001, ISO 27701, ISO 27017, ISO 27018, and CSA STAR.

Framework
Auditor
Last report
Renewal
View official trust center ↗

About

iManage is a comprehensive document and email management platform/document management system which is tailored for legal firms and professional business in mind. It offers a centralised repository for storing, organising, and accessing critical documents, contracts, and communications.

Compliance & infrastructure

SOC 2 Type IIISO 27001ISO 27701ISO 27017ISO 27018CSA STAR
Hosting
AWSAzure
Data handled
Customer personally identifiable informationEmployee personally identifiable informationCredit card informationPersonal health informationCustomer Defined

Subprocessors

17
  • A
    Amazon Web Services, Inc. · Data Center Provider (Closing Folders – data storage only – no access to data)
    Australia, Canada, European Union, United Kingdom, and United States
  • C
    Centersquare · Data Center Provider (Multiple iManage Cloud Services – data storage only – no a
    United States and United Kingdom
  • N
    NEXTDC Limited · Data Center Provider (Multiple iManage Cloud Services – data storage only – no a
    Australia
  • i
    iManage Canada Technologies ULC · Customer Support (All iManage Cloud Services and Software)
    171 East Liberty Street, Suite 300 Toronto, ON M6K 3P6
  • i
    iManage EMEA Limited · Customer Support (All iManage Cloud Services and Software)
    Suite 1, 3rd Floor, 11-12 St. James’s Square London, United Kingdom, SW1Y 4LB
  • i
    iManage LLC · Customer Support (All iManage Cloud Services and Software)
    71 South Wacker Drive, 4th Floor Chicago, IL 60606
  • N
    NetRight Singapore Holdings PTE Ltd. · Customer Support (All iManage Cloud Services and Software)
    4 Battery Road, #25-01, Bank of China Building, Singapore 49908
  • A
    Amazon Web Services, Inc. (Bedrock) · Advanced Signature Detection (Closing Folders)
    See the Data Processing table in the description.
  • N
    NetRight Spain Holdings S.L. · Customer Support (All iManage Cloud Services and Software)
    Cl Tuset 23-25 P.1 08006 Barcelona
  • N
    NetRight Technologies Private Limited · Customer Support (All iManage Cloud Services and Software)
    Infinix Pearl, 17/2, 2nd floor, Industrial Layout, Jakkasandra, 3rd Block Koramangala, Bangalore 560034
  • B
    Beamer · Customer Notifications (Multiple iManage Cloud Services)
    United States
  • M
    MessageBird (Pusher) · Communications Integration Platform (Closing Folders)
    Netherlands
Show all 17 subprocessors
  • M
    Microsoft Corporation · Microsoft 365 Apps and Services, (Multiple iManage Cloud Services), Document Int
    Customer Chosen Region
  • M
    MixPanel · Visualization of User Analytics (Multiple iManage Cloud Services and Software)
    European Union
  • M
    MongoDB, Inc. · (Multiple iManage Cloud Services and Software, including relevant integrations w
    United States
  • T
    Twilio (Segment, SendGrid) · Cloud Communications, Email Service, User Analytics (Multiple iManage Cloud Serv
    Segment: United States and European Union SendGrid: Customer chosen hosting region
  • Z
    Zendesk, Inc. · Customer Support Tickets (Multiple iManage Cloud Services and Software)
    Unites States

Compliance leadership

The person who leads iManage LLC's SOC 2 isn't listed yet. Claim this profile to add it.

Penetration test

Unknown. iManage LLC's penetration test vendor isn't listed yet.

Claim this profile to add it.

Recent updates

Claude Mythos Cybersecurity AI StatusJun 2026

A recently publicized AI-driven cyber threat known as Claude Mythos has received significant attention in the cybersecurity community, and we have been actively monitoring developments. At this time, we have identified no exposure to the reported attack vectors associated with Claude Mythos. iManage is actively tracking developments related to Claude Mythos and incorporates this monitoring into our broader security program. Our approach includes, but is not limited to, the following: _Proactive Threat Detection_ We monitor emerging threats and vulnerabilities through dedicated threat intelligence sources and automated security monitoring. Critical and high-severity issues are promptly reviewed and escalated to the appropriate engineering and security teams for assessment. _Regular Security Testing_ _We conduct regular penetration testing of our applications and infrastructure and maintain a private bug bounty program to support ongoing vulnerability identification and responsible disclosure. _Structured Remediation_ When security issues are identified through automated scanning, penetration testing, threat intelligence, or external reporting, our security and engineering teams collaborate to assess, prioritize, and remediate them according to established severity-based response timelines. Remediation activities undergo validation before closure. _Continuous Improvement_ We…

The updated Security Policy Manager Pen Test Q1-2025 - Executive Summary v1.3 report is now available.Dec 2025

The Security Policy Manager Application Penetration Test Executive Summary Report has been updated to v1.3 and is now available in the Resources section.

React2Shell Vulnerability (CVE-2025-55182) StatusDec 2025

A high-profile vulnerability, React2Shell (CVE-2025-55182), has been in the news recently, and we have been monitoring it. Based on our investigation, none of our products is vulnerable. - iManage does not use React server-components (react-server-dom-webpack, react-server-dom-parcel, react-server-dom-turbopack) versions 19.0, 19.1.0, 19.1.1, or 19.2.0. - iManage does not use Next.js versions 15.x or 16.x. https://nvd.nist.gov/vuln/detail/CVE-2025-55182

The Share Pen Test Q1-2025 Application Penetration Test Executive Summary Report is now available.Dec 2025

The Share Q1-2025 Application Penetration Test Executive Summary Report is now available in the Resources section.

The updated Business Continuity Management Policy is now available.Oct 2025

The Business Continuity Management Policy has been updated to version 4 and is now available on the Resources page under the Business Continuity section.

This listing is partial

6/11 details · 55%

SOC2C shows the verified essentials. 5 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.

  • Auditorraises trust
    Add the CPA firm that issued your SOC 2 so buyers can verify who signed it.
  • Report dateraises trust
    Add your most recent report period so buyers see how current your SOC 2 is.
  • Renewal date
    Add your renewal window so buyers know your coverage is active.
  • Documents
    List the documents you share (SOC 2 report, SOC 3, pen-test summary, DPA) and whether each is public or on request.
  • Security controls
    Confirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Claim free to control your listing

Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.

Frequently asked

Is iManage LLC SOC 2 compliant?
iManage LLC is SOC 2 Type II compliant. On SOC2C this listing is Listed.
Is iManage LLC ISO 27001 certified?
According to iManage LLC's public trust center, iManage LLC is ISO 27001 certified. On SOC2C this listing is Listed.
Is iManage LLC ISO 27701 certified?
According to iManage LLC's public trust center, iManage LLC is ISO 27701 certified. On SOC2C this listing is Listed.
Is iManage LLC ISO 27017 certified?
According to iManage LLC's public trust center, iManage LLC is ISO 27017 certified. On SOC2C this listing is Listed.
Is iManage LLC ISO 27018 certified?
According to iManage LLC's public trust center, iManage LLC is ISO 27018 certified. On SOC2C this listing is Listed.

Business & Industrial peers that completed SOC 2