Is this your company? Buyers are checking Trustwell here. Claim trustwell.com free to control the listing, earn the badge buyers trust, and see who's evaluating you.
Claim free
Trustwell
Sourced from public information. Not yet verified by the company.
Trustwell is SOC 2 Type II compliant. Trustwell also holds GDPR.
About
The Safety and Compliance Platform for the Food and Supplement Industry At Trustwell, we’re connecting the dots between food and data so you can have more control over your products along the supply chain. The Trustwell Connect Platform brings together the pioneering achievements of two amazing products Genesis and FoodLogiQ to set a new standard for compliance, transparency, and quality in the food industry.
Compliance & infrastructure
Subprocessors
7- AAmazon Web Services · Cloud provider410 Terry Avenue North, Seattle, WA 98109, USA
- OOkta · Identity provider123 N Wacker Drive, Suite 400 Chicago, IL 60606, USA
- MMicrosoft Azure · Cloud providerOne Microsoft Way, Redmond, Washington 98052, USA
- PPendo · Data analytics301 Hillsborough St, Ste 1900, Raleigh, NC 27603, USA
- MMongoDB · Data storage and processing1633 Broadway, 38th Floor, New York, NY 10019, USA
- DDatadog · Monitoring and Observability620 8th Avenue, Floor 45, New York, NY 10018, USA
- FFastSpring · eCommerce Provider801 Garden St. #201, Santa Barbara, CA 93101, USA
Compliance leadership
The person who leads Trustwell's SOC 2 isn't listed yet. Claim this profile to add it.
Penetration test
Unknown. Trustwell's penetration test vendor isn't listed yet.
Claim this profile to add it.
This listing is partial
6/11 details · 55%SOC2C shows the verified essentials. 5 details are not yet provided by the company. Trust centers list more, so we invite the owner to fill the gaps here.
- Auditorraises trustAdd the CPA firm that issued your SOC 2 so buyers can verify who signed it.
- Report dateraises trustAdd your most recent report period so buyers see how current your SOC 2 is.
- Renewal dateAdd your renewal window so buyers know your coverage is active.
- DocumentsList the documents you share (SOC 2 report, SOC 3, pen-test summary, DPA) and whether each is public or on request.
- Security controlsConfirm key controls (encryption, MFA/SSO, annual pen test, BCP/DR) buyers screen for.
Verify your work email to take ownership, earn the badge buyers trust, and add the details that win deals.
Frequently asked
Is Trustwell SOC 2 compliant?
Is Trustwell GDPR compliant?
Is Trustwell SOC 2 Type I or Type II?
Can I use Trustwell's SOC 2 for a vendor risk assessment?
Is Trustwell penetration tested?
Is Trustwell secure?
Does Trustwell have a bug bounty or vulnerability disclosure program?
Who are Trustwell's subprocessors?
Where does Trustwell host or store data?
Where is Trustwell's trust center or security page?
Are physical controls in place to protect sensitive areas within offices, including but not limited to computer rooms, network closets, filing cabinets, etc.?
Does Trustwell follow established procedures for carrying out and confirming the destruction of data residing on systems, devices or in paper form prior to their recycling, refurbishing, resale, or physical disposal?
How often are your business continuity and disaster recovery plans tested? When was it last tested?
Is there a compliance program or set of policies and procedures to address bribery, corruption, prohibition of providing monetary offers, incentives, or improper actions that create unfair advantage in business practices?
Do you encrypt data at rest?
Are environmental controls in place to protect core IT infrastructure such as servers, storage and network devices against power outages, fire and water damage?
Are background checks performed on applicants for positions which may have direct or indirect access to systems which may store, process or transmit data?
Does Trustwell have a documented and implemented mandatory security awareness and training program for all employees?
How often is your security incident response process tested?
Does Trustwell have a process in place to conduct post-incident review to incorporate lessons learned and update response strategies.
Is there a defined process for internal and external communication of security incidents? Please supply additional information to validate your response, including details of how customers are notified of security incidents.
Is Trustwell at risk to the log4j vulnerability that was discovered in 2021 (CVE-2021-44228)?
Business & Industrial peers that completed SOC 2

Newsworthy.ai

1099-Prep

Octopus Deploy
