SOC2C

Is this your company? Buyers are checking Merit Medicine here. Claim meritmedicine.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.

Claim free
Merit Medicine logo

Merit Medicine

Trust level
Listed
Unverified

Sourced from public information. Not yet verified by the company.

Merit Medicine is SOC 2 Type II compliant. Merit Medicine also holds HIPAA.

Framework
Auditor
Last report
Renewal
View official trust center ↗

About

Trust at Merit Medicine ----------------------- At Merit Medicine, we prioritize your privacy, security, and trust. Our commitment is built on: - Protecting Your Information: We implement robust data protection protocols and comply with all relevant regulations to safeguard your sensitive information. - Transparency: We are open about how we use and protect your data. - Innovation with Care: Our predictive analytics and machine learning tools are designed with security and confidentiality at their core. Your trust is our priority, and we remain dedicated to upholding the highest standards of p

Compliance & infrastructure

Hosting
AWS
Data handled
Customer personally identifiable informationEmployee personally identifiable informationCredit card informationPersonal health information

Documents

12

Subprocessors

4
  • A
    Amazon Web Services · Cloud provider
  • G
    GitHub · Version control
  • G
    Google Workspace · Identity provider
  • H
    Hubspot · Marketing

Compliance leadership

The person who leads Merit Medicine's SOC 2 isn't listed yet. Claim this profile to add it.

Penetration test

Unknown. Merit Medicine's penetration test vendor isn't listed yet.

Claim this profile to add it.

Recent updates

SOC 2 Type 2 AttestationMay 2025

We are pleased to announce that Merit Medicine has successfully achieved SOC 2 Type II compliance, reaffirming our commitment to the highest standards of security, availability, and confidentiality. This certification validates that our internal controls and processes have been rigorously evaluated over an extended period by an independent auditor, ensuring the protection of sensitive information entrusted to us. A copy of our SOC 2 Type II report is available upon request through our Trust Center. If you have any questions or need additional information, please contact us at privacy@meritmedicine.com.

SOC 2 Type 1 AttestationDec 2024

At Merit Medicine, we are proud to announce that we have successfully achieved SOC 2 compliance, demonstrating our commitment to maintaining the highest standards of security, availability, and confidentiality. This independent attestation verifies that our systems and processes meet rigorous requirements for safeguarding sensitive information. A copy of our SOC 2 report is available upon request through our Trust Center. If you have any questions or need additional information, please contact us at privacy@meritmedicine.com.

This listing is partial

7/11 details · 64%

SOC2C shows the verified essentials. 4 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.

  • Auditorraises trust
    Add the CPA firm that issued your SOC 2 so buyers can verify who signed it.
  • Report dateraises trust
    Add your most recent report period so buyers see how current your SOC 2 is.
  • Renewal date
    Add your renewal window so buyers know your coverage is active.
  • Security controls
    Confirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Claim free to control your listing

Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.

Frequently asked

Is Merit Medicine SOC 2 compliant?
Merit Medicine is SOC 2 Type II compliant. On SOC2C this listing is Listed.
Is Merit Medicine HIPAA compliant?
According to Merit Medicine's public trust center, Merit Medicine is HIPAA compliant. On SOC2C this listing is Listed.
Is Merit Medicine SOC 2 Type I or Type II?
Merit Medicine is SOC 2 Type II compliant. A Type II report covers how security controls operated over a period (typically 3 to 12 months), a stronger signal than a point-in-time Type I.
Can I use Merit Medicine's SOC 2 for a vendor risk assessment?
Yes. Merit Medicine's SOC 2 status, frameworks, auditor, and renewal timing are on SOC2C for vendor risk and security reviews. Request the underlying report through SOC2C to complete your third-party risk file.
Is Merit Medicine penetration tested?
Merit Medicine hasn't listed its penetration testing on SOC2C yet. SOC 2 Type II programs typically include periodic third-party penetration tests; the company can add who performed theirs.