SOC2C

Is this your company? Buyers are checking Ontra here. Claim ontra.ai free to control the listing, earn the badge buyers trust, and see who's evaluating you.

Claim free
Ontra logo

Ontra

Trust level
Listed
Unverified

Sourced from public information. Not yet verified by the company.

Ontra is SOC 2 Type II compliant. Ontra also holds ISO 27001, and ISO 42001.

Framework
Auditor
Last report
Renewal
View official trust center ↗

About

Our customers trust us with their most sensitive data because they’ve validated the rigorous processes and technologies we’ve implemented to keep their information safe. We strive to deliver products and services that adhere to the industry’s highest security requirements. We’ll continue to earn the confidence of our customers by staying at the forefront of the best privacy and security practices. If you discover any vulnerabilities or exploits in our product or website, please report them to the contact below. If you wish to receive email notifications about changes to our Subprocessors, plea

Compliance & infrastructure

Hosting
AWS

Documents

3

Subprocessors

21
  • A
    Amazon Web Services · Cloud, Infrastructure and AI provider
    USA
  • G
    Google, Inc. · Cloud, Infrastructure, Productivity and AI provider
    USA
  • O
    OpenAI, LLC · AI Provider
    USA
  • G
    GitHub · Repository Provider
    USA
  • M
    Microsoft Corporation · AI Provider
    USA
  • A
    Anthropic · AI Provider
    USA
  • S
    Slack · Internal Communications Provider
    USA
  • C
    Cloudflare · Cloud Monitoring Provider
    USA
  • S
    Snowflake · Data Storage and Processing Provider
    USA
  • A
    Arize AI · Developing, monitoring, and improving AI applications
    USA
  • S
    Segment · Data Analytics Provider
    USA
  • S
    Sigma · Data Analytics Provider
    USA
Show all 21 subprocessors
  • B
    Billing Platform · Finance and Payments Provider
    USA
  • F
    Fivetran · Data Integration Provider
    USA
  • F
    Forge Technologies, Inc. d/b/a Paragon · iPaaS Provider
    USA
  • D
    DocuSign · Electronic Signature Provider
    USA
  • D
    Dropbox · File Sharing Provider
    USA
  • L
    Logiscale, Inc. d/b/a Superstaff · Document Processing Provider
    Philippines
  • I
    InCloudCounsel Limited · Other
    United Kingdom
  • I
    InCloud Consulting Limited · Other
    Hong Kong
  • I
    InCloud, LLC · Other
    USA

Compliance leadership

The person who leads Ontra's SOC 2 isn't listed yet. Claim this profile to add it.

Penetration test

Unknown. Ontra's penetration test vendor isn't listed yet.

Claim this profile to add it.

Recent updates

New Report Available: SOC 2 Type 2 January 1 to December 31, 2024May 2025

We’re pleased to announce that Ontra has completed an independent SOC 2 Type 2 audit covering the period from January 1 to December 31, 2024. The audit covers all five Trust Services Criteria: Security, Availability, Confidentiality, Processing Integrity, and Privacy, verifying that our controls were designed and operated effectively throughout the year.

Ontra has received ISO 27001:2022 CertificationOct 2024

We are pleased to announce that Ontra has received ISO 27001:2022 certification. This certification reflects our strong commitment to ensuring the highest level of information security practices and aligning our security program with international standards.

Ontra has completed its ongoing SOC 2 Type 2 compliance auditJan 2024

SOC 2 Type 2 compliance requires an ongoing commitment to security and privacy practices and demonstrates our dedication to protecting our customers' data. We have uploaded the SOC 2 Type 2 report to this trust portal for our customers' reference.

This listing is partial

7/11 details · 64%

SOC2C shows the verified essentials. 4 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.

  • Auditorraises trust
    Add the CPA firm that issued your SOC 2 so buyers can verify who signed it.
  • Report dateraises trust
    Add your most recent report period so buyers see how current your SOC 2 is.
  • Renewal date
    Add your renewal window so buyers know your coverage is active.
  • Security controls
    Confirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Claim free to control your listing

Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.

Frequently asked

Is Ontra SOC 2 compliant?
Ontra is SOC 2 Type II compliant. On SOC2C this listing is Listed.
Is Ontra ISO 27001 certified?
According to Ontra's public trust center, Ontra is ISO 27001 certified. On SOC2C this listing is Listed.
Is Ontra ISO 42001 certified?
According to Ontra's public trust center, Ontra is ISO 42001 certified. On SOC2C this listing is Listed.
Is Ontra SOC 2 Type I or Type II?
Ontra is SOC 2 Type II compliant. A Type II report covers how security controls operated over a period (typically 3 to 12 months), a stronger signal than a point-in-time Type I.
Can I use Ontra's SOC 2 for a vendor risk assessment?
Yes. Ontra's SOC 2 status, frameworks, auditor, and renewal timing are on SOC2C for vendor risk and security reviews. Request the underlying report through SOC2C to complete your third-party risk file.

Business & Industrial peers that completed SOC 2