SOC2C

Is this your company? Buyers are checking Staq here. Claim staq.io free to control the listing, earn the badge buyers trust, and see who's evaluating you.

Claim free
Staq logo

Staq

Trust level
Listed
Unverified

Sourced from public information. Not yet verified by the company.

Staq is SOC 2 Type II compliant. Staq also holds GDPR, ISO 27001, PCI DSS, ISO 27017, and ISO 27018.

Framework
Auditor
Last report
Renewal
View official trust center ↗

About

At Staq we take risk and compliance very seriously. Security and trust is of utmost importance to us, our partners and our customers. This page provides real-time, transparent and simple information regarding Staq's compliance and security standards. For more information you can contact the Staq team using the email address provided below.

Compliance & infrastructure

Documents

2

Compliance leadership

The person who leads Staq's SOC 2 isn't listed yet. Claim this profile to add it.

Penetration test

Unknown. Staq's penetration test vendor isn't listed yet.

Claim this profile to add it.

This listing is partial

5/11 details · 45%

SOC2C shows the verified essentials. 6 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.

  • Auditorraises trust
    Add the CPA firm that issued your SOC 2 so buyers can verify who signed it.
  • Report dateraises trust
    Add your most recent report period so buyers see how current your SOC 2 is.
  • Renewal date
    Add your renewal window so buyers know your coverage is active.
  • Subprocessors
    List your subprocessors so buyers can assess fourth-party risk, the way your trust center does.
  • Hosting
    Add where you host (AWS, GCP, Azure) and data residency.
  • Security controls
    Confirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Claim free to control your listing

Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.

Frequently asked

Is Staq SOC 2 compliant?
Staq is SOC 2 Type II compliant. On SOC2C this listing is Listed.
Is Staq GDPR compliant?
According to Staq's public trust center, Staq is GDPR compliant. On SOC2C this listing is Listed.
Is Staq ISO 27001 certified?
According to Staq's public trust center, Staq is ISO 27001 certified. On SOC2C this listing is Listed.
Is Staq PCI DSS compliant?
According to Staq's public trust center, Staq is PCI DSS compliant. On SOC2C this listing is Listed.
Is Staq ISO 27017 certified?
According to Staq's public trust center, Staq is ISO 27017 certified. On SOC2C this listing is Listed.

Answers published by Staq

Reproduced from Staq's own trust center. These are the company's statements about its security practices — SOC2C has not tested or verified them, and they may have changed since we last read the page. Check the source ↗

Where are your servers located?
Our platform can be deployed in a location of your choosing, be that cloud (eg AWS) or on-premise. Our dev environment is currently located on cloud with AWS with data residency options across the world.
How do you manage end-user data privacy?
Our banking and business partners are the data controllers of end-user data. Staq operates as a data processor on a limited basis. Staq's platform is compliant with data privacy laws such as GDPR, enabling our partners to manage end-user data in a compliant manner. Where required by local laws, Staq signs a Data Processing Agreement (DPA) with its partners to govern the processing of end-user data.
How do you comply with outsourcing rules in financial services?
As a key outsourcing provider of regulated financial services entities, Staq is fully aware of the outsourcing rules now in place across most jurisdictions. Staq works closely with its partners to ensure full compliance with outsourcing rules. As an example, Staq's Master Service Agreement has been design with compliance in mind, seeking to address all of the common contractual requirements present in the outsource rules, which can of course be tailored to local specificities.
Is Staq a licensed financial services entity?
Staq is not a licensed financial services entity. We are a technology and business solutions company which partners with licensed financial services entities to offer Banking-as-a-Service and Embedded Finance solutions.
Do you conduct periodic security tests?
Staq engages third-party consultants to periodically audit its information security management systems.

Business & Industrial peers that completed SOC 2