Glossary of Compliance

Compliance Glossary

Our list of curated compliance glossary offers everything you to know about compliance in one place.

Glossary Β» SOC 2 Β» SSAE 18

SSAE 18

SSAE 18 is a set of updates to the SOC (Service Organization Control) report standards, replacing the previous version, SSAE 16, and the older SAS 70 report. These enhancements aim to improve the quality and usefulness of SOC reports. With these updates, companies will be required to take more responsibility for identifying and categorizing risks and properly managing their relationships with third-party vendors. These changes will help address any gaps identified in the reports of many service organizations, although they are relatively manageable.

Additional reading

HIPAA Enforcement Rule: All You Need To Know In 2025

The Health Insurance Portability and Accountability Act of 1996 (HIPAA) is a federal law that protects patients’ sensitive health information. As a Business Associate (BA), you must comply with the HIPAA Privacy, Security, and Breach Notification rules. When you fail to do so, the HIPAA Enforcement Rule defines what follows. In this article, you will…

Building Resilience: 5 Components of a Risk Management Framework

The U.S. Securities and Exchange Commission recently mandated that public companies disclose cybersecurity incidents and include details such as the board’s cyber risk oversight. This enables investors to assess the organization’s cybersecurity governance and long-term stability. Similarly, even private companies must demonstrate a commitment to security and risk management to secure contracts and build client…

How to Prepare a PCI DSS Report (All You Need to Know)

If you accept debit or credit cards, you must achieve and maintain compliance with the PCI Security Standards Council. Any service provider that has the potential to affect the payment security of card transactions is also subject to the Payment Card Industry Data Security Standard (PCI DSS). The PCI report is a cornerstone of this…

Sprinto: Your growth superpower

Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.