Independent attestation report on a service organization's controls. Type II covers controls operating over time (6-12 months).
SOC 2 Type II
Independent attestation report on a service organization's controls. Type II covers controls operating over time (6-12 months).
SOC 2 Type II is an independent attestation report under AICPA standards covering a service organization's controls over the security, availability, processing integrity, confidentiality and privacy of customer data. Type II reports cover controls operating over time (typically 6-12 months); Type I is a point-in-time snapshot. Almost every CCaaS vendor holds SOC 2 Type II.