Compliance · Glossary
SOC 2
An auditable framework for evaluating a SaaS vendor’s security, availability, processing integrity, confidentiality and privacy.
Full definition
SOC 2 (Service Organization Control 2) is a framework used to audit SaaS vendors against the five Trust Service Criteria: security, availability, processing integrity, confidentiality and privacy. A SOC 2 report is the standard third-party assurance that an HR platform’s controls are designed and operating effectively. Zaffre HRM operates with SOC 2-style controls — clustered backend, encrypted backups, immutable audit log, RBAC and tenant isolation are all in place — and is actively planning a Type II audit.
SOC 2 in practice
See how Zaffre HRM implements soc 2 across HR, payroll, attendance and operations.
Book a demo