Compliance

SOC 2 Type II

SOC 2 Type II

Our controls are designed against the AICPA Trust Services Criteria covering security, availability, and confidentiality, and are audited on a recurring basis by an independent CPA firm.

What this covers

Access management with role-based least privilege, encrypted data handling, change management, incident response, vendor review, and continuous monitoring of production systems.

Reports

Current SOC 2 Type II reports are available to customers under NDA. Contact legal@runia.io to request the latest attestation.