SOC2C

Is this your company? Buyers are checking Sovos here. Claim sovos.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.

Claim free
Sovos logo

Sovos

Trust level
Listed
Unverified

Sourced from public information. Not yet verified by the company.

Sovos is SOC 2 Type II compliant. Sovos also holds ISO 27001, GDPR, and CCPA.

Framework
Auditor
Last report
Renewal
View official trust center ↗

About

Sovos Compliance has implemented a comprehensive security program covering all aspects of Information Security and with the intention of providing defense in depth for the protection of Sovos systems and sensitive customer information. The program is designed around the concept of utilizing the ‘least common denominator’ control – that is, the most restrictive control required by a governing regulation, law, customer requirement, or industry best practice - and applying that control to all environments and aspects of the business. This approach allows Sovos to easily meet and normally exceed a

Compliance & infrastructure

Documents

16

Compliance leadership

The person who leads Sovos's SOC 2 isn't listed yet. Claim this profile to add it.

Penetration test

Unknown. Sovos's penetration test vendor isn't listed yet.

Claim this profile to add it.

Recent updates

Sovos appoints Accenture as new subprocessor for Support!Nov 2024

Who is Accenture, and what role will they serve? Accenture is a global professional services company that has decades of experience in IT services, consulting, and digital transformation. Known for its expertise in strategy, technology, and operations, Accenture will be handling and supporting our ticketing system, carrying out first-line troubleshooting of issues and errors reported to Sovos. By strengthening our capabilities on this front, we strive to enhance our responsiveness and service quality, helping us to deliver timely assistance for all your needs.

This listing is partial

5/11 details · 45%

SOC2C shows the verified essentials. 6 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.

  • Auditorraises trust
    Add the CPA firm that issued your SOC 2 so buyers can verify who signed it.
  • Report dateraises trust
    Add your most recent report period so buyers see how current your SOC 2 is.
  • Renewal date
    Add your renewal window so buyers know your coverage is active.
  • Subprocessors
    List your subprocessors so buyers can assess fourth-party risk, the way your trust center does.
  • Hosting
    Add where you host (AWS, GCP, Azure) and data residency.
  • Security controls
    Confirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Claim free to control your listing

Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.

Frequently asked

Is Sovos SOC 2 compliant?
Sovos is SOC 2 Type II compliant. On SOC2C this listing is Listed.
Is Sovos ISO 27001 certified?
According to Sovos's public trust center, Sovos is ISO 27001 certified. On SOC2C this listing is Listed.
Is Sovos GDPR compliant?
According to Sovos's public trust center, Sovos is GDPR compliant. On SOC2C this listing is Listed.
Is Sovos CCPA compliant?
According to Sovos's public trust center, Sovos is CCPA compliant. On SOC2C this listing is Listed.
Is Sovos SOC 2 Type I or Type II?
Sovos is SOC 2 Type II compliant. A Type II report covers how security controls operated over a period (typically 3 to 12 months), a stronger signal than a point-in-time Type I.

Business & Industrial peers that completed SOC 2