soc 2 type ii report compliance

It’s Official: Qminder Is SOC 2 Type II Compliant

Back in March 2021, we announced that Qminder has completed its SOC 2 Type I certification.

Today, we are excited to share that we have reached the next milestone by achieving SOC 2 Type II compliance.

Your data’s security has always been at the core of Qminder, and this latest report reinforces that.

What is SOC 2 Type II?

Developed by the American Institute of CPAs, SOC (or Service Organization Control) is an auditing procedure which ensures that third-party service providers can securely manage customer data.

This auditing involves assessment of how well the service provider follows the five trust service principles:

  1. Availability, or accessibility of the service provider’s system.

  2. Confidentiality, or the use and access of sensitive information.

  3. Processing integrity, or the system’s ability to deliver the right data at the right time.

  4. Security, or the system’s ability to protect itself against unauthorized access.

  5. Privacy, or the system’s storage and disposal of personal information.

SOC 2 certification is issued by auditors, who assess the service provider’s compliance with one or more of the five trust principles. Qminder has partnered with Vanta to simplify the audit process and continuously monitor our compliance.

What does it mean to be compliant with SOC 2 Type II?

The main difference between SOC 2 Type I and SOC 2 Type II is that the latter is issued after observing the service provider’s operations over a longer period of time.

Achieving a SOC 2 is a major milestone for any organization interested in improving their security — and proving that security posture to customers or prospects. SOC 2 certification is voluntary, although the cost and time associated with pursuing a SOC 2 pose a challenge.

What does SOC 2 Type II certification mean for you? Just that your data is safe with Qminder. “We take data privacy seriously” is a cliche of a corporate statement, but this report proves it’s not just empty words in our case.

Previous

Qminder Introduces Total Time for the Service View

Next

Make Your Event Successful With a Queue Management System