OfficeRnD has obtained a SOC 2 Type 2 report. This independent audit confirms that our internal controls for security, availability, confidentiality, and privacy are both well designed and operating effectively over time.

At OfficeRnD, we care deeply about data security and customer privacy.

A SOC 2 Type 2 report is an independent attestation, issued by a licensed CPA firm, that a company’s controls meet the American Institute of Certified Public Accountants (AICPA) Trust Services Criteria and worked as intended across a defined observation period rather than at a single point in time.

After completing a thorough audit against the “Trust Services Criteria for Security, Availability, Confidentiality, and Privacy (TSC)” established by the AICPA, OfficeRnD is glad to announce that our organization has obtained a SOC 2 Type 2 report.

What are the Trust Services Criteria?

The AICPA’s Assurance Services Executive Committee (ASEC) developed a set of trust services criteria.

Auditors use them to evaluate the design and operating effectiveness of controls over the security, availability, and processing integrity of information and systems. The criteria also cover the confidentiality and privacy of the information those systems process.

Who conducted the audit?

The SOC 2 attestation was conducted by A-LIGN, a technology-enabled security and compliance partner trusted by more than 6,400 organizations worldwide and the number one issuer of SOC 2 reports.

As a trusted third-party assessment firm, A-LIGN independently evaluated our processes and procedures and validated OfficeRnD’s internal controls and security posture governance.

As a leading Flexible and Hybrid workplace management service provider that is already ISO 27001 certified, obtaining a clean SOC 2 Type 2 report was a logical next step. This independent assessment of our internal security controls shows our commitment to maintaining the highest standards of security for our diverse and global customer base,” – Deyan Varchev, Chief Technology Officer at OfficeRnD.

OfficeRnD’s clean SOC 2 Type 2 report confirms our continuous commitment to data security and protection.

It reports on the suitable design and operating effectiveness of our internal control framework, which consists of over 300 controls.

OfficeRnD performs a SOC 2 assessment annually. The report is available to current or potential customers upon signing a non-disclosure agreement.

Please request access here if you are interested in viewing OfficeRnD’s SOC 2 report.

Frequently asked questions

What is a SOC 2 Type 2 report?

It’s an independent report from a licensed CPA firm that tests whether a company’s controls for security, availability, confidentiality, and privacy operated effectively over a period of time, usually six to twelve months. A Type 1 report checks control design on a single date; a Type 2 report checks that those controls actually worked across the whole period.

Is OfficeRnD SOC 2 compliant?

Yes. OfficeRnD has a clean SOC 2 Type 2 report and repeats the assessment every year. OfficeRnD is also ISO 27001 certified.

How can I get a copy of OfficeRnD’s SOC 2 report?

Email [email protected] to request access. The report is shared with current and prospective customers after a non-disclosure agreement is signed.

Asen Stoyanchev
Senior Content Marketing & SEO Specialist | OfficeRnD
Asen is a Senior Content Marketing & SEO Specialist at OfficeRnD with 5+ years in the workplace and flex space management industries. He tests workplace software hands-on and writes independent, in-depth product reviews and buyer's guides for the teams responsible for choosing it.