Security is one of the five trust service criteria of SOC 2. It refers to the protection of information and systems from unauthorized disclosure of information or damages to systems that may result in compromised availability, integrity, confidentiality, and privacy in a way that affects the capacity of the organization to meet its objectives. It seeks to protect:

– Information that is collected, stored, used, transmitted, or processed.

– Systems that leverage electronic information to process, transmit, transfer data to meet its objectives.

