SOC II

IBM Security offers its customers a SOC II Type II Annual Report documenting two rounds of checks. A third party creates the report as an independent assessment of IBM Security’s control environment.

The SOC II report, issued annually in accordance with the AICPA’s AT Section 101 (Attest Engagements) and based on the AICPA’s Trust Services Criteria, addresses the Security, Availability, and Confidentiality criteria.