{"id":81796,"date":"2020-02-18T07:03:14","date_gmt":"2020-02-18T15:03:14","guid":{"rendered":"https:\/\/oroinc.com\/b2b-ecommerce\/?p=81796"},"modified":"2023-07-07T00:40:25","modified_gmt":"2023-07-07T07:40:25","slug":"orocommerce-security-announcing-soc-2-certification","status":"publish","type":"post","link":"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/","title":{"rendered":"OroCommerce Security: Announcing SOC 2 Certification"},"content":{"rendered":"<p><span style=\"font-weight: 400;\">Every customer\u2019s data is important to us. We know the data you entrust us with is sensitive, so we want you to know it\u2019s in safe hands. <\/span><span style=\"font-weight: 400;\">That\u2019s why we are happy to announce that Oro\u2019s SOC 2 certification has been finalized and is available upon request.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Oro has fulfilled <\/span><b>Security<\/b><span style=\"font-weight: 400;\"> and <\/span><b>Availability<\/b><span style=\"font-weight: 400;\"> requirements for Trust Service Criteria (TSC) as part of its SOC 2 certification. Note that many SaaS vendors only focus on one area of systems and procedures in their organization (Security), since meeting additional criteria is optional.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">For Oro, the <\/span><b>Availability <\/b><span style=\"font-weight: 400;\">criteria demonstrate our commitment to ensuring the availability of our systems and communicating that to our clients. The Availability part of the report discusses the accessibility of our applications, our network performance monitoring, and other security-related criteria that may affect availability.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">In this post, we\u2019ll take the opportunity to tell you about SOC 2, what it does, what this compliance requirement means to technology companies such as Oro, and what it means for our customers.<\/span><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-81805 size-medium aligncenter\" src=\"https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2020\/02\/oro-soc-2-aicpa-720x292.png\" alt=\"Oro SOC 2 Compliance AICPA\" width=\"720\" height=\"292\" srcset=\"https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2020\/02\/oro-soc-2-aicpa-720x292.png 720w, https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2020\/02\/oro-soc-2-aicpa-768x311.png 768w, https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2020\/02\/oro-soc-2-aicpa-760x308.png 760w, https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2020\/02\/oro-soc-2-aicpa-360x146.png 360w, https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2020\/02\/oro-soc-2-aicpa-1080x438.png 1080w, https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2020\/02\/oro-soc-2-aicpa.png 1544w\" sizes=\"auto, (max-width: 720px) 100vw, 720px\" \/><\/p>\n<h2><span style=\"font-weight: 400;\">What is SOC 2 compliance and why it is important<\/span><\/h2>\n<p><span style=\"font-weight: 400;\">Service Organization Controls (SOC 2) is a reporting mechanism developed by the American Institute of Certified Public Accountants (<\/span><a href=\"https:\/\/www.aicpa.org\/\" target=\"_blank\" rel=\"noopener noreferrer\"><span style=\"font-weight: 400;\">AICPA<\/span><\/a><span style=\"font-weight: 400;\">) specifically designed for service providers that store customer data in the cloud. This is a third-party assessment that covers the design of an organization\u2019s controls relevant to its security, confidentiality and availability.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The SOC 2 report gives our partners, customers, and end-users the utmost confidence in Oro and its suite of products. This important milestone shows our commitment to giving customers all the necessary assurances that our system controls are up-to-date.<\/span><\/p>\n<h3><span style=\"font-weight: 400;\">What SOC 2 compliance means for Oro customers<\/span><\/h3>\n<p><span style=\"font-weight: 400;\">Some customers require a high-level external validation to properly assess the level of trust and security offered by a service organization. SOC 2 demonstrates that the necessary security controls are in place at Oro for the safe and reliable handling of sensitive data.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">It\u2019s important that our existing customers understand that they can trust that we have taken all the necessary measures to protect their data. The SOC 2 certification is further proof of our commitment to constantly improve on the security, scalability, and seamlessness of Oro applications.<\/span><\/p>\n<h3><span style=\"font-weight: 400;\">What was checked as part of SOC 2 compliance\u00a0<\/span><\/h3>\n<p><span style=\"font-weight: 400;\">Essentially, a SOC 2 certification confirms that an entity has established the minimum level of requirements in certain areas of the organization. These range from risk assessment procedures, processes that monitor malicious activity (known or anticipated), alerts that warn of anomalies, and ways to contain, manage, and audit events in case they occur.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Some of the criteria met by Oro as part of the recent SOC 2 certification include (but is not limited to):<\/span><\/p>\n<h3><span style=\"font-weight: 400;\">Control Environment<\/span><\/h3>\n<ul>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The entity demonstrates a commitment to integrity and ethical values.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The board of directors demonstrates independence from management and exercises oversight of the development and performance of internal control.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">Management establishes, with board oversight, structures, reporting lines, and appropriate authorities and responsibilities in the pursuit of objectives.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The entity demonstrates a commitment to attract, develop, and retain competent individuals in alignment with objectives.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The entity holds individuals accountable for their internal control responsibilities in the pursuit of objectives.<\/span><\/li>\n<\/ul>\n<h3><span style=\"font-weight: 400;\">Communication and Information<\/span><\/h3>\n<ul>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The entity obtains or generates and uses relevant, quality information to support the<\/span>\u00a0functioning of internal control.<\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The entity internally communicates information, including objectives and responsibilities <\/span>for internal control, necessary to support the functioning of internal control.<\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The entity communicates with external parties regarding matters affecting the functioning <\/span>of internal control.<\/li>\n<\/ul>\n<h3><span style=\"font-weight: 400;\">Risk Assessment<\/span><\/h3>\n<ul>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The entity specifies objectives with sufficient clarity to enable the identification and <\/span>assessment of risks relating to objectives.<\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The entity identifies risks to the achievement of its objectives across the entity and analyzes risks as a basis for determining how the risks should be managed.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The entity considers the potential for fraud in assessing risks to the achievement of <\/span>objectives.<\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The entity identifies and assesses changes that could significantly impact the system of <\/span>internal control.<\/li>\n<\/ul>\n<h3><span style=\"font-weight: 400;\">Monitoring Activities<\/span><\/h3>\n<ul>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The entity selects, develops, and performs ongoing and\/or separate evaluations to ascertain whether the components of internal control are present and functioning.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The entity evaluates and communicates internal control deficiencies in a timely manner to those parties responsible for taking corrective action, including senior management and the board of directors, as appropriate.<\/span><\/li>\n<\/ul>\n<h3><span style=\"font-weight: 400;\">Control Activities<\/span><\/h3>\n<ul>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The entity selects and develops control activities that contribute to the mitigation of risks to the achievement of objectives to acceptable levels.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The entity also selects and develops general control activities over technology to support the achievement of objectives.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The entity deploys control activities through policies that establish what is expected and in procedures that put policies into action.<\/span><\/li>\n<\/ul>\n<h3><span style=\"font-weight: 400;\">Additional Criteria<\/span><\/h3>\n<ul>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The entity maintains, monitors, and evaluates current processing capacity and use of system components (infrastructure, data, and software) to manage capacity demand and to enable the implementation of additional capacity to help meet its objectives.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The entity authorizes, designs, develops or acquires, implements, operates, approves, maintains, and monitors environmental protections, software, data backup processes, and recovery infrastructure to meet its objectives.<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">The entity tests recovery plan procedures supporting system recovery to meet its objectives.<\/span><\/li>\n<\/ul>\n<h2><span style=\"font-weight: 400;\">SOC 2 vs PCI DSS<\/span><\/h2>\n<p><span style=\"font-weight: 400;\">Companies that accept credit cards on their website must comply with PCI DSS requirements. Oro has kept up to date and is compliant with the <\/span><a href=\"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/pci-dss-is-changing-soon-how-does-this-affect-you\/\" target=\"_blank\" rel=\"noopener noreferrer\"><span style=\"font-weight: 400;\">latest changes in PCI<\/span><\/a><span style=\"font-weight: 400;\"> for its cloud-hosted family of products.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">While both SOC 2 and PCI DSS deal with safety and security, there are some differences between the two. Unlike PCI DSS, which has very rigid requirements for handling payment information, SOC 2 reports are broader and unique to each organization. SOC 2 audits also focus on policy, processes, processing integrity, availability, and confidentiality of customer data.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">A SOC 2 certification demonstrates that:<\/span><\/p>\n<ul>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">the organization\u2019s systems are protected as specified,<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">the organization\u2019s systems are available for operation as specified,<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">the organization has set up the necessary due diligence and training processes,<\/span><\/li>\n<li style=\"font-weight: 400;\"><span style=\"font-weight: 400;\">the organization has met established policy, process and ethics requirements.<\/span><\/li>\n<\/ul>\n<h2><span style=\"font-weight: 400;\">In Conclusion<\/span><\/h2>\n<p><span style=\"font-weight: 400;\">While SOC 2 compliance isn\u2019t mandatory for most SaaS and cloud vendors, it\u2019s invaluable as a measure of an organization\u2019s data security. A SOC 2 audit evaluates many components, starting from the physical infrastructure and hardware, software, people, processes, and data processed by the system. PCI DSS, by comparison, also focuses on the organization\u2019s controls, but it\u2019s centered around securing credit card and cardholder data.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Both of these security compliances assure our customers that we have established and are constantly improving on some of the best-in-class safeguards, procedures, and policies to ensure their information stays protected. We hope this is a further indication of Oro\u2019s ongoing commitment to safety, security, as well as its robustness as a leading <a href=\"https:\/\/oroinc.com\/b2b-ecommerce\/\" target=\"_blank\" rel=\"noopener noreferrer\">B2B eCommerce<\/a> platform.<\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Every customer\u2019s data is important to us. We know the data you entrust us with is sensitive, so we want you to know it\u2019s in safe hands. That\u2019s why we are happy to announce that Oro\u2019s SOC 2 certification has been finalized and is available upon request. Oro has fulfilled Security and Availability requirements for [&hellip;]<\/p>\n","protected":false},"author":38577,"featured_media":81799,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"ep_exclude_from_search":false,"footnotes":""},"categories":[6],"tags":[],"class_list":{"0":"post-81796","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-product-news-updates"},"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v26.8 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>OroCommerce Security: Announcing SOC 2 Certification | OroCommerce<\/title>\n<meta name=\"description\" content=\"OroCommerce, the most flexible open-source B2B eCommerce application is announcing SOC 2 certification to maintain our ongoing SOC 2 compliance.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"OroCommerce Security: Announcing SOC 2 Certification | OroCommerce\" \/>\n<meta property=\"og:description\" content=\"OroCommerce, the most flexible open-source B2B eCommerce application is announcing SOC 2 certification to maintain our ongoing SOC 2 compliance.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/\" \/>\n<meta property=\"og:site_name\" content=\"OroCommerce\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/OroCommerce-333319140210515\/\" \/>\n<meta property=\"article:published_time\" content=\"2020-02-18T15:03:14+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2023-07-07T07:40:25+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2020\/02\/Oro-SOC2-Compliance-Social.png\" \/>\n\t<meta property=\"og:image:width\" content=\"540\" \/>\n\t<meta property=\"og:image:height\" content=\"281\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"msarandi\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@orocommerce\" \/>\n<meta name=\"twitter:site\" content=\"@orocommerce\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"msarandi\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"6 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/\"},\"author\":{\"name\":\"msarandi\",\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/#\/schema\/person\/cfd81a5e04e6dfd15b75be8e895d8287\"},\"headline\":\"OroCommerce Security: Announcing SOC 2 Certification\",\"datePublished\":\"2020-02-18T15:03:14+00:00\",\"dateModified\":\"2023-07-07T07:40:25+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/\"},\"wordCount\":1117,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/#organization\"},\"image\":{\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2020\/02\/CCPA-Blog1.png\",\"articleSection\":[\"Product News &amp; Updates\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/\",\"url\":\"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/\",\"name\":\"OroCommerce Security: Announcing SOC 2 Certification | OroCommerce\",\"isPartOf\":{\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2020\/02\/CCPA-Blog1.png\",\"datePublished\":\"2020-02-18T15:03:14+00:00\",\"dateModified\":\"2023-07-07T07:40:25+00:00\",\"description\":\"OroCommerce, the most flexible open-source B2B eCommerce application is announcing SOC 2 certification to maintain our ongoing SOC 2 compliance.\",\"breadcrumb\":{\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/#primaryimage\",\"url\":\"https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2020\/02\/CCPA-Blog1.png\",\"contentUrl\":\"https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2020\/02\/CCPA-Blog1.png\",\"width\":750,\"height\":440,\"caption\":\"Oro SOC 2 Compliance\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/oroinc.com\/b2b-ecommerce\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Product News &amp; Updates\",\"item\":\"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/category\/product-news-updates\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"OroCommerce Security: Announcing SOC 2 Certification\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/#website\",\"url\":\"https:\/\/oroinc.com\/b2b-ecommerce\/\",\"name\":\"OroCommerce\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/oroinc.com\/b2b-ecommerce\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/#organization\",\"name\":\"Oro Inc.\",\"url\":\"https:\/\/oroinc.com\/b2b-ecommerce\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2019\/11\/Oro-OLogo.png\",\"contentUrl\":\"https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2019\/11\/Oro-OLogo.png\",\"width\":40,\"height\":40,\"caption\":\"Oro Inc.\"},\"image\":{\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/www.facebook.com\/OroCommerce-333319140210515\/\",\"https:\/\/x.com\/orocommerce\",\"https:\/\/www.youtube.com\/channel\/UClxsA8HS9KGEEsvFRn7JkvQ\"]},{\"@type\":\"Person\",\"@id\":\"https:\/\/oroinc.com\/b2b-ecommerce\/#\/schema\/person\/cfd81a5e04e6dfd15b75be8e895d8287\",\"name\":\"msarandi\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"OroCommerce Security: Announcing SOC 2 Certification | OroCommerce","description":"OroCommerce, the most flexible open-source B2B eCommerce application is announcing SOC 2 certification to maintain our ongoing SOC 2 compliance.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/","og_locale":"en_US","og_type":"article","og_title":"OroCommerce Security: Announcing SOC 2 Certification | OroCommerce","og_description":"OroCommerce, the most flexible open-source B2B eCommerce application is announcing SOC 2 certification to maintain our ongoing SOC 2 compliance.","og_url":"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/","og_site_name":"OroCommerce","article_publisher":"https:\/\/www.facebook.com\/OroCommerce-333319140210515\/","article_published_time":"2020-02-18T15:03:14+00:00","article_modified_time":"2023-07-07T07:40:25+00:00","og_image":[{"width":540,"height":281,"url":"https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2020\/02\/Oro-SOC2-Compliance-Social.png","type":"image\/png"}],"author":"msarandi","twitter_card":"summary_large_image","twitter_creator":"@orocommerce","twitter_site":"@orocommerce","twitter_misc":{"Written by":"msarandi","Est. reading time":"6 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/#article","isPartOf":{"@id":"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/"},"author":{"name":"msarandi","@id":"https:\/\/oroinc.com\/b2b-ecommerce\/#\/schema\/person\/cfd81a5e04e6dfd15b75be8e895d8287"},"headline":"OroCommerce Security: Announcing SOC 2 Certification","datePublished":"2020-02-18T15:03:14+00:00","dateModified":"2023-07-07T07:40:25+00:00","mainEntityOfPage":{"@id":"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/"},"wordCount":1117,"commentCount":0,"publisher":{"@id":"https:\/\/oroinc.com\/b2b-ecommerce\/#organization"},"image":{"@id":"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/#primaryimage"},"thumbnailUrl":"https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2020\/02\/CCPA-Blog1.png","articleSection":["Product News &amp; Updates"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/","url":"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/","name":"OroCommerce Security: Announcing SOC 2 Certification | OroCommerce","isPartOf":{"@id":"https:\/\/oroinc.com\/b2b-ecommerce\/#website"},"primaryImageOfPage":{"@id":"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/#primaryimage"},"image":{"@id":"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/#primaryimage"},"thumbnailUrl":"https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2020\/02\/CCPA-Blog1.png","datePublished":"2020-02-18T15:03:14+00:00","dateModified":"2023-07-07T07:40:25+00:00","description":"OroCommerce, the most flexible open-source B2B eCommerce application is announcing SOC 2 certification to maintain our ongoing SOC 2 compliance.","breadcrumb":{"@id":"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/#primaryimage","url":"https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2020\/02\/CCPA-Blog1.png","contentUrl":"https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2020\/02\/CCPA-Blog1.png","width":750,"height":440,"caption":"Oro SOC 2 Compliance"},{"@type":"BreadcrumbList","@id":"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/orocommerce-security-announcing-soc-2-certification\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/oroinc.com\/b2b-ecommerce\/"},{"@type":"ListItem","position":2,"name":"Product News &amp; Updates","item":"https:\/\/oroinc.com\/b2b-ecommerce\/blog\/category\/product-news-updates\/"},{"@type":"ListItem","position":3,"name":"OroCommerce Security: Announcing SOC 2 Certification"}]},{"@type":"WebSite","@id":"https:\/\/oroinc.com\/b2b-ecommerce\/#website","url":"https:\/\/oroinc.com\/b2b-ecommerce\/","name":"OroCommerce","description":"","publisher":{"@id":"https:\/\/oroinc.com\/b2b-ecommerce\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/oroinc.com\/b2b-ecommerce\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/oroinc.com\/b2b-ecommerce\/#organization","name":"Oro Inc.","url":"https:\/\/oroinc.com\/b2b-ecommerce\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/oroinc.com\/b2b-ecommerce\/#\/schema\/logo\/image\/","url":"https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2019\/11\/Oro-OLogo.png","contentUrl":"https:\/\/oroinc.com\/b2b-ecommerce\/wp-content\/uploads\/sites\/3\/2019\/11\/Oro-OLogo.png","width":40,"height":40,"caption":"Oro Inc."},"image":{"@id":"https:\/\/oroinc.com\/b2b-ecommerce\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/OroCommerce-333319140210515\/","https:\/\/x.com\/orocommerce","https:\/\/www.youtube.com\/channel\/UClxsA8HS9KGEEsvFRn7JkvQ"]},{"@type":"Person","@id":"https:\/\/oroinc.com\/b2b-ecommerce\/#\/schema\/person\/cfd81a5e04e6dfd15b75be8e895d8287","name":"msarandi"}]}},"_links":{"self":[{"href":"https:\/\/oroinc.com\/b2b-ecommerce\/wp-json\/wp\/v2\/posts\/81796","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/oroinc.com\/b2b-ecommerce\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/oroinc.com\/b2b-ecommerce\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/oroinc.com\/b2b-ecommerce\/wp-json\/wp\/v2\/users\/38577"}],"replies":[{"embeddable":true,"href":"https:\/\/oroinc.com\/b2b-ecommerce\/wp-json\/wp\/v2\/comments?post=81796"}],"version-history":[{"count":9,"href":"https:\/\/oroinc.com\/b2b-ecommerce\/wp-json\/wp\/v2\/posts\/81796\/revisions"}],"predecessor-version":[{"id":139139,"href":"https:\/\/oroinc.com\/b2b-ecommerce\/wp-json\/wp\/v2\/posts\/81796\/revisions\/139139"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/oroinc.com\/b2b-ecommerce\/wp-json\/wp\/v2\/media\/81799"}],"wp:attachment":[{"href":"https:\/\/oroinc.com\/b2b-ecommerce\/wp-json\/wp\/v2\/media?parent=81796"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/oroinc.com\/b2b-ecommerce\/wp-json\/wp\/v2\/categories?post=81796"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/oroinc.com\/b2b-ecommerce\/wp-json\/wp\/v2\/tags?post=81796"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}