SOC 2 Type 2 Reports

SOC 2, developed by the American Institute of Certified Public Accountants (AICPA), is a standard for internal controls that protect information stored across HCLSoftware infrastructure and in the cloud. Independent auditors conduct audits against the SOC 2 controls and establish a report that can be shared as a summary of the service organization's compliance status. SOC 2 Type II reports attest to the design and operating effectiveness of internal controls over a period of time and against the relevant Trust Services Criteria (TSC).

List of reports: HCLSoftware's HCL Data Centers, HCL Now, HCL Volt MX, and HCL Unica and HCL Unica+ .

Access to these reports is restricted to HCLSoftware and its customers. To obtain a copy, please click the "Download Now" button below, or contact the HCLSoftware Compliance Team at compliance@hcl-software.com to execute a Non-Disclosure Agreement (NDA).





HCL AppScan on Cloud(ASoC)’s Type 2 SOC 2 + C5 Report

Our latest SOC 2 Type 2 compliance report incorporates the Cloud Computing Compliance Criteria Catalogue (C5) to provide an evaluation of our cloud security environment. Audited and issued by independent third-party accountants under the ISAE 3000 international standard and AICPA standards, this report validates that our internal controls continuously meet both the Trust Services Criteria and advanced international cloud compliance requirements.

Access to these reports is restricted to HCLSoftware and its customers. To obtain a copy, please click the "Download Now" button below, or contact the HCLSoftware Compliance Team at compliance@hcl-software.com to execute a Non-Disclosure Agreement (NDA).





HCL AppScan on Cloud(ASoC)’s
SOC 3 Type 2 Report

Our System and Organization Controls (SOC 3) report provides a high-level summary of HCL AppScan on Cloud(ASoC)’s internal controls and security posture. Based on the same rigorous audit as our SOC 2 Type II, this report confirms that we meet the AICPA Trust Services Criteria for Security, Availability, and Confidentiality.

This document is designed for public distribution to provide our customers and partners with independent assurance that their data is protected by industry-leading standards. No additional paperwork or bridge letters will be issued for SOC3.

 

Download now