A firm and affiliate of Coalfire – can help you examine and report on controls. Contact an Expert Demonstrate your commitment to securityA System and Organization Controls report (SOC 1, 2, or 3) is a widely recognized examination that helps promote trust and confidence in your organization’s security and financial controls performance. SOC reports conform to the guidance prescribed by the American Institute of CPAs (AICPA) Statement on Stan
View source ↗Coalfire SOC 2 status and provider evidence
Review Coalfire’s public SOC 2 statement, report type, evidence source, and freshness.
Coalfire’s SOC 2 stack
No provider is named on the current source.
We will update this page if the company publishes more detail.
Frameworks named by Coalfire
f your system or services impact your customer's financial statements or internal controls over financial reporting, then the SOC 1 attestation may be right for your organization. SOC 2 SOC 2 is an attestation that addresses a service organization’s system controls related to the AICPA’s Trust Service Categories (TSCs) of security, availability, processing integrity of a system, or the confidentiality or privacy of the information processed
View source ↗AICPA’s Trust Service Categories (TSCs) of security, availability, processing integrity of a system, or the confidentiality or privacy of the information processed by that system. SOC 3 SOC 3 is a redacted SOC 2 Type 2 report that removes any proprietary and/or confidential information so it can be made publicly available. It is often utilized as marketing collateral. Other frameworks (SOC + reports) Leveraging our expertise across a wide va
View source ↗Primary compliance evidence
f your system or services impact your customer's financial statements or internal controls over financial reporting, then the SOC 1 attestation may be right for your organization. SOC 2 SOC 2 is an attestation that addresses a service organization’s system controls related to the AICPA’s Trust Service Categories (TSCs) of security, availability, processing integrity of a system, or the confidentiality or privacy of the information processed
Open source ↗