Gallagher Security unveils it has renewed its SOC2 Type 2 certification

Eve Goode
Share this content
Gallagher Security has announced that it has achieved renewal of attestation status for System and Organization Controls (SOC2 Type 2) as related to the cloud-hosted services of its integrated security solution, Command Centre.
SOC 2 Type 2 is an audit framework that third-party service providers complete to emphasize their commitment to strict ongoing internal regulations that ensure its customer data is protected.
Five trust service principles
The framework specifies criteria to uphold high standards of data security, based on five trust service principles:
- Security
- Privacy
- Availability
- Confidentiality
- Processing integrity
“Strong influence over security system choice”
Mike Randle, Compliance Engineer, Gallagher Security addressed the importance of managing sensitive customer data: “We’re living in a world where information is highly valuable and protecting that information is becoming increasingly difficult.
“This is why programs like the American Institute of Certified Public Accountants (AICPA) SOC 2 criteria framework were created: to ensure that companies can be trusted to protect their customers’ information.
“As cloud solutions, compliances and cyber-threats become more commonplace, IT departments are gaining a more important seat at the decision-making table and have strong influence over security system choice.
“It’s our responsibility to be prepared with the information they need to build confidence.
“In January, the World Economic Forum released their Global Cybersecurity Outlook 2024 Insight Report which made the concerning observation that ‘a stark divide between cyber-resilient organizations and those that are struggling has emerged.’
“At Gallagher Security, we understand that our customers need assurance and trust that we not only care about protecting their data but also about safeguarding our own practices as this helps protect all of our customers,” explained Randle.
SOC2 Type 2
The voluntary SOC2 Type 2 compliance standard for service organizations maintained by AICPA provides a structure to annually assess an organization’s internal controls for information security and privacy.
During the audit process, the cloud-hosted services of Gallagher’s Command Centre solution were examined by an external party to ensure information security processes, policies and procedures complied with the stringent AICPA trust principles.
In addition to the SOC2 Type 2 accreditation, Gallagher Security maintains a comprehensive suite of standards and certifications including ISO27001, CAPSS 2021 and FIPS 140-3.