Trust Center / SOC 2 Type II
SOC 2 Type II
Inherited through Microsoft Azure’s own attestation, not held by VIDIZMO in its own name.
What It Is
SOC 2 Type II is an attestation, examined by an independent auditor, that an organization’s security controls against the Trust Services Criteria operated effectively over a defined review period, not just at a single point in time.
What It Majorly Requires, and How VIDIZMO Supports It
- Security (the Common Criteria, required in every SOC 2 report): protection against unauthorized access, both physical and logical.
- Availability: the system is available for operation and use as committed or agreed.
- Processing Integrity: system processing is complete, valid, accurate, timely, and authorized.
FAQ
SOC 2 Type II, asked and answered
Does VIDIZMO have SOC 2 Type II certification?
VIDIZMO supports SOC 2 Type II through the underlying Microsoft Azure infrastructure it runs on, this is inherited at the infrastructure layer rather than a separate audit performed on VIDIZMO itself. VIDIZMO's own independently audited certification is ISO/IEC 27001:2022.
What does "inherited through Azure" mean for SOC 2 compliance?
It means the data centers, physical security, and infrastructure controls VIDIZMO runs on are covered by Microsoft's own SOC 2 Type II attestation, so customers benefit from that assurance without VIDIZMO needing a separate infrastructure-level audit. VIDIZMO's application-layer security is addressed separately through its own ISO 27001 certification and platform controls.
Is this the same as VIDIZMO being directly SOC 2 audited?
No, SOC 2 Type II here reflects Azure's infrastructure attestation, not an independent audit of VIDIZMO's own systems and processes. For VIDIZMO's own audited security certification, see its ISO/IEC 27001:2022 certificate.
Can I get a copy of the SOC 2 report or audit documentation?
Since the SOC 2 Type II attestation applies to Microsoft Azure's infrastructure rather than VIDIZMO directly, the relevant report is issued by Microsoft; VIDIZMO's own security posture is documented in its ISO 27001 certification and can be discussed further with the VIDIZMO team for procurement or compliance reviews.
How does this fit with VIDIZMO's other compliance certifications?
SOC 2 Type II sits alongside other Azure-inherited frameworks like CSA STAR, and complements VIDIZMO's own ISO/IEC 27001:2022 certification, which covers information security management across all VIDIZMO service lines.
Does this affect deployments in regulated environments like government or healthcare?
Azure's SOC 2 Type II attestation applies to whichever Azure environment a deployment runs on (including Azure Government Cloud), so it factors into the same infrastructure trust chain regulated customers already rely on for hosting-related compliance obligations.
Need our security documentation?
Tell us what your review requires and we will send the relevant evidence.