CivilGrid is now SOC2 compliant!

CivilGrid is now SOC2 compliant!

CivilGrid is proud to announce that we’ve received a clean SOC 2 Type 2 attestation report. This rigorous, independent assessment of our internal security controls serves as validation of our dedication and adherence to the highest standards for security, confidentiality, and availability. 


This is an important milestone but is in no way an end to our commitment to our customers and the security of their data. CivilGrid views security as the foundation upon which our products are built and upon which trust with our customers is earned and maintained. 


CivilGrid uses Drata’s automated platform to continuously monitor its internal security controls with the highest possible standards. With Drata, CivilGrid has real-time visibility across the organization to ensure the end-to-end security and compliance posture of our systems.


Conducted by MJD Advisors, a nationally recognized CPA firm registered with the Public Company Accounting Oversight Board, this attestation report affirms that CivilGrid’s information security practices, policies, procedures, and operations meet the rigorous SOC 2 Trust Service Criteria for security, confidentiality, and availability.


Developed by the AICPA, SOC 2 is an extensive auditing procedure that ensures a company is handling customer data securely and in a manner that protects the organization as well as the privacy of its customers. SOC 2 is designed for service providers storing customer data in the cloud.


As more enterprises look to process sensitive and confidential business data with cloud-based services like CivilGrid, it’s critical that they do so in a way that ensures their data will remain safe. Our customers carry this responsibility on their shoulders every single day, and it’s important that the vendors they select to process their data in the cloud approach that responsibility in the same way. 


We welcome all customers and prospects who are interested in discussing our commitment to security and/or reviewing our SOC compliance reports to contact us.