SOC 2 Type II - ComportSecure

With over 30 years of experience working with highly regulated industries, including healthcare and financial services, we understand the critical importance of cybersecurity. As part of our commitment to our customers’ security, we want to share that our private cloud services and “as a Service” offerings have been SOC 2 Type II compliant since 2021. As a leader in managed IT services Minneapolis and managed IT services Minnesota, Comport supports organizations with secure, compliant infrastructure solutions. 

AdobeStock_587332494

The following solutions are included in our SOC 2 Type II report: 

  • Infrastructure as a Service (IaaS). Cloud-based infrastructure owned and managed by Comport, provided on demand. 
  • Backup as a Service (BaaS). Cloud-based data backups. 
  • Disaster Recovery as a Service (DRaaS). Disaster recovery ensures business continuity after a natural disaster, power outage, or cyberattack.
  • Private Cloud services hosted in our Atlanta, Las Vegas, and Minneapolis data centers, supporting IT services in Minneapolis and beyond.
We believe that good security practices are worth investing in across our entire portfolio, so we take everything we’ve learned from the services above and apply the same rigor and control to our managed services. As one of the top managed service providers and IaaS cloud service providers, we deliver consistent, high-quality Minnesota managed services and IT infrastructure consulting.
What is a SOC 2 Type II report?

Organizations seeking a SOC (Service Organization Controls) 2 Type II report are audited to show that the controls they have in place are designed well and are operationally effective over a sustained period of time (usually six months or a year). A SOC 2 Type II report is also known as a SOC 2 Type 2 report. A common misconception is that companies can be “SOC 2 Type 2 certified” when, in fact, there is no certification designation, only SOC 2 Type 2 compliance.

A “Type II” report differs from a “Type I” report in the depth of the audit and the need for consistent compliance over an extended period. A Type I report audits the design only at a single point in time; a Type II report audits the design and execution over a minimum of 6 months. When you choose a SOC 2 Type II service provider like Comport—trusted for Minneapolis managed IT services and IT managed services Minneapolis—you benefit from consistent operational adherence to security standards.

For each of the included services, an independent firm audits our security policies, processes, training, and execution—ensuring we adhere to the actions outlined in our planned policies and processes. A successful audit results in a SOC 2 Type II report that attests to the alignment of the controls implemented with established requirements, including international standards. We utilize automated monitoring tools to ensure year-round compliance and to quickly identify any potential deviations from our controls and operations.

SOC Report Cover
100-US-based-IT-help

Continuous Improvement

Cyberattacks and data breaches are constantly evolving, so we continually seek ways to enhance the secure design and operation of our solutions. Independent auditors conduct an annual SOC 2 audit to demonstrate our controls are not only sufficient but also proactive in protecting customer data and systems. Our expertise in Minneapolis IT services, Minneapolis IT managed services, and Minneapolis managed IT services ensures clients stay ahead of emerging threats.


Want to know more?

Customers can request a copy of our most recent SOC 2 Type II report. Additionally, our ComportSecure services are ISO 27001 and HIPAA compliant, supporting organizations seeking reliable IT services Minneapolis and secure managed solutions.

Resources

HPC-Security
4 Ways HPC Security Can Boost your Defense

High Performance Computing was built to handle supersized amounts of data, making it perfect for real-time analysis of security threats and potential vulnerabilities.

Cyber-Incident-Response-Retainer
What Are Cyber Incident Response Retainers?

Cybersecurity breaches can be devastating to businesses, so make sure you can get emergency help when you need it. Learn about the different retainer types and what’s right for your company.

Cybersecurity-Risk-Assessment-Services
Cybersecurity Maturity Assessment (CMA)

The Comport CMA is an evaluation of your organization’s security posture that identifies vulnerabilities and gaps, then creates an action roadmap to implement improvements.