# SOC 2

> SOC 2 is a widely recognised audit standard that assesses how well a service organisation protects customer data across security, availability, confidentiality, processing integrity and privacy. Enterprises often require it from vendors.

*Source: https://www.lazlosoftwaresolution.com/glossary/soc-2*

A SOC 2 report is produced by an independent auditor and signals mature security practices. Achieving it involves formalising controls, monitoring and evidence — a common prerequisite for selling software to larger customers.
