Glossary of Compliance

Compliance Glossary

Our list of curated compliance glossary offers everything you to know about compliance in one place.

Glossary » SOC 2 » Privacy

Privacy

Privacy is one of the five trust service criteria of SOC 2. It is information an entity collects, uses, retains, discloses, and disposes to meet its objectives. 

The privacy principle aims to service organizations who handle sensitive personal information do so in a responsible and trustworthy manner. They should have appropriate controls in place to protect the privacy of individuals. This principle guides organizations to handle privacy based on the following:

– Notice and communication of objectives

– Choice and consent

– Collection

– Use, retention, and disposal

– Access

– Disclosure and notification

– Quality

– Monitoring and enforcement

Additional reading

Top 10 Delve Alternatives Compared for Scalable Compliance in 2026

TL;DR Delve works well for fast first-time certifications, but growing teams often need deeper automation, stronger integrations, and real-time risk visibility as compliance becomes recurring. Alternatives like Drata, Vanta, Secureframe, Scrut, and Hyperproof each offer strengths across automation, customization, enterprise governance, or guided compliance, but differ in scalability and operational flexibility. For teams moving toward…

The Hidden Costs of Poor Compliance Visibility

When you grow to mid-market status, compliance is no longer about just passing audits. In fact, for many of you reading this, passing an audit barely represents a baseline for security. Instead, your goals revolve around keeping up with a risk-first world and maintaining market trust that you’ve worked hard to build. With growing vendor…

Honest MetricStream GRC Review: Power, Complexity, and the Real Cost

TL;DR MetricStream offers deep functionality across risk, compliance, audit, and policy management. Ideal for large orgs, but heavy on implementation, customization, and admin overhead. Licensing, services, and reporting support add up fast. Costs range from $75K to $1M+ annually, making it impractical for lean or fast-moving teams. Despite flexible modules and integrations, the platform suffers…

Sprinto: Your growth superpower

Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.