SOC 2 company profile

Brex SOC 2 status and provider evidence

Review Brex’s public SOC 2 statement, report type, evidence source, and freshness.

SOC 2 statusself attested
Report typeType II
Providers found0
Last checked2026-08-29
Providers

Brex’s SOC 2 stack

No provider is named on the current source.

We will update this page if the company publishes more detail.

Primary compliance evidence

Brex public statement

uct in house to be in control. This allows us to easily make upgrades, patch systems, and continuously iterate on security.Regulatory complianceIn addition to being SOC 1 Type II, SOC 2 Type II, and PCI-DSS compliant, Brex also fulfills requirements from FINRA, IT General Controls, NY Department of Financial Services, and more. Beyond those baseline requirements, Brex safeguards customer data with enhanced controls to ensure best-in-class protection

Classification: self attested · checked 2026-08-29
Open source ↗
SOC 1SOC 2SOC 3Type IType IIAudit readinessTrust centersVendor riskSecurity evidenceProcurement