---
title: What Is SOC 2 Compliance?
description: "With great data, comes great responsibility. Read Hiya's primer on SOC 2 Compliance: why companies need it, why consumers want it, and its core tenants."
image: https://blog.hiya.com/hubfs/shutterstock_1095422036.jpg
---

[![Hiya logo](https://blog.hiya.com/hubfs/hiya-new-purple.svg)](https://www.hiya.com/)

Solutions

Solutions

[For Mobile Operators Protect your network](https://www.hiya.com/solutions/operators) [For Businesses Brand your calls](https://www.hiya.com/solutions/businesses) [For People Get the mobile app](https://www.hiya.com/products/apps/hiya-spam-blocker)

###### Webinar

Branded Calling 101 Weekly Webinar

Make your company's calls more recognizable. Learn how Hiya can drive value for your business.

[Sign up today Arrow Right](https://www.hiya.com/lp/webinar-series-intro-to-hiya-branded-call)

Products

 Connect

###### [Branded Call Display your branded caller ID](https://www.hiya.com/products/connect/branded-call)

###### [Number Registration Display your branded caller ID](https://www.hiya.com/products/connect/number-registration)

###### [View Plans Flexible pricing for teams of all sizes](https://www.hiya.com/products/connect/pricing)

 Protect

###### [Spam Analytics Stop spam & fraud on your mobile network](https://www.hiya.com/products/protect/spam-analytics)

###### [AI Voice Detection Real-time AI voice detection](https://www.hiya.com/products/protect/ai-voice-detection)

 Mobile apps

###### [Hiya Spam Blocker Fraud & AI voice protection](https://www.hiya.com/products/apps/hiya-spam-blocker)

###### [Hiya AI Phone Productivity for busy people](https://www.hiya.com/products/apps/hiya-ai-phone)

![](https://blog.hiya.com/hubfs/sotc-report.avif)

###### Report

State of the Call 2026

86% of unidentified calls go unanswered. Read the benchmark report for what is happening in voice today, and what you can do to drive business.

[Read the report Arrow Right](https://www.hiya.com/state-of-the-call)

Why Hiya?

Overview

[Why Hiya Your voice innovation partner](https://www.hiya.com/why-hiya) [How it works Get started quickly & easily](https://www.hiya.com/how-it-works) [Customer Stories Real companies, real results](https://www.hiya.com/case-studies) [Voice Intelligence Platform Industry’s leading voice platform](https://www.hiya.com/why-hiya/voice-intelligence-platform) [Trust Center Compliance, security, & privacy](https://www.hiya.com/why-hiya/trust-center)

Company

[About Leadership and history](https://www.hiya.com/company/about) [Careers We're hiring!](https://www.hiya.com/company/careers) [Contact us Get in touch](https://www.hiya.com/contact-us)

![](https://blog.hiya.com/hubfs/bclc-hero-img.webp)

###### Customer Story

BCLC increases business KPIs with Hiya

With Hiya Branded Call BCLC was able to increase contact rates, campaign efficiency, and revenue.

[Read their story Arrow Right](https://www.hiya.com/customer-stories/bclc)

Resources

Resources

[Resource Center](https://www.hiya.com/resources) [Partner Program](https://partners.hiya.com/) [Get Support](https://hiya.com/support) [Developer Docs](https://developer.hiya.com/)

[Hiya Blog](https://blog.hiya.com/) [Newsroom](https://www.hiya.com/newsroom) [Events](https://www.hiya.com/events)

###### eBook

10 Tips for customer-friendly phone calls

 Prevent caller reputation issues and complaints with customer-friendly calling practices. 

[Read eBook Arrow Right](https://www.hiya.com/resources/ebooks/10-tips-for-customer-friendly-phone-calls)

[Get Started Arrow Right](https://www.hiya.com/#audience)

[Log in](https://connect.hiya.com/login) [Get started](https://www.hiya.com/#audience)

- [Home](https://hiya.com)
- [Blog](https://blog.hiya.com)
- [What Is SOC 2 Compliance?](https://blog.hiya.com/what-is-soc-2-compliance)

[Scam Trends](https://blog.hiya.com/tag/scam-trends)

# What Is SOC 2 Compliance?

[Alicia Marie Beatty](https://blog.hiya.com/author/alicia-marie-beatty)

Apr. 26, 2021

[![](https://blog.hiya.com/hubfs/icon-fb.svg)](https://www.facebook.com/sharer/sharer.php?u=https://blog.hiya.com/what-is-soc-2-compliance) [![](https://blog.hiya.com/hubfs/icon-x.svg)](https://twitter.com/intent/tweet?url=https://blog.hiya.com/what-is-soc-2-compliance&text=What+Is+SOC+2+Compliance%3F) [![](https://blog.hiya.com/hubfs/icon-linkedin.svg)](https://www.linkedin.com/shareArticle?mini=true&url=https://blog.hiya.com/what-is-soc-2-compliance)

## At a glance

![](https://blog.hiya.com/hubfs/shutterstock_1095422036.jpg)

With great data, comes great responsibility. When SOC 2 Compliance was introduced, it was in direct response to the growing need for security in data storage, particularly so that consumers could trust companies that utilize a cloud-based data storage approach. As cloud technology continues to grow and evolve, so does the ability for hackers to infiltrate these systems. Without a framework for companies to continue to optimize security measures, customers’ data has the potential to be rendered vulnerable to outside invaders. As a result, companies across the globe have adopted a variety of security guidelines known as the SOC 2 Trust Principles to ensure the safety of the 21st century’s most precious commodity--data--in the ever-changing landscape of cloud technology. 

 

### SOC 2 Trust Principles 

While companies get certified in SOC 2, it differs from other certifications with strict requirements, like GDPR and CCPA, in one primary way: SOC 2 reports are tailored to companies, each with their own unique set of goals, challenges, and, most importantly, vulnerabilities. With this, each organization shapes its reports based on the following principles: 

 

![SOC2](https://blog.hiya.com/hs-fs/hubfs/SOC2.jpg?width=300&name=SOC2.jpg)

 

Privacy: 

All data collection, use, retention, disclosure and disposal, particularly PII (any information that can distinguish an individual, such as a name, address, or social security number) must conform to an organization’s privacy policy. The privacy policy should also follow the guidelines put forth in the AICPA’s privacy principles, known as GAPP. Other forms of data considered sensitive in nature include, but are not limited to: health, race, sexuality, and religion. While not considered directly PII, organizations should consider treating these forms of data with similar sensitivity.   

 

Confidentiality:

Data should be accessible only to the people or persons who will need to utilize it for specific, pre-agreed upon, business offerings or dealings. Companies are to put in place controls to mitigate the ability for unauthorized personnel to access confidential information. This is most often done by implementing a firewall, but other systems (such as access controls) can be utilized in tandem to safeguard information in computer systems. 

 

Security:

Organizations must implement a set of security measures to prevent breaches in the cloud, particularly where data is stored. This can be done in a variety of ways, but is most often implemented via technologies such as: web application firewalls (WAFs), two-factor authenticators, and intrusion detection systems. With these tools, organizations can monitor for outside intrusion into the cloud and improper internal usage.  

 

Availability:

Companies must adhere to the minimum acceptable performance level as set forth in their service level agreements or contracts with customers. To do this, organizations typically put in place systems to monitor network performance and availability to avoid crashes. Also inclusive in this principle is the process by which security failures are rectified and subsequently modified to mitigate vulnerabilities. 

 

Processing Integrity:

Data processing must follow these four subsequent principles in order to be considered processed with integrity: authorized, complete, accurate, and timely. To be considered authorized, data must be approved for processing ahead of time and serve a business need that’s compliant with the customer’s contract. Further, the data processing is considered valid only if it is complete--not stopped midway through the processing. Finally, processing will be considered accurate if it follows the operation’s pre-approved instructions and it will be found to be timely if all of the aforementioned activities are completed in the pre-agreed upon time frame. 

 

A note: processing integrity does not account for faults inlaid in the data itself—it exclusively discusses the processing of the data. The job of ensuring data integrity typically falls to the entity responsible for data input into the system whereby the processing will begin. 

 

## Final Thoughts (For The Skimmers Among Us)

SOC 2 Compliance isn’t so much a checklist as it is guidelines and agreements among involved parties to ensure mitigation of data misuse, security around said data, and the agreement to implement swift action against hackers and system invaders. As cloud systems evolve, so will these policies, which is why they are often written with broad strokes. However, organizations, such as Hiya, adopt SOC 2 Compliance to indicate that they are committed to vigilant monitoring; to show that they are willing to go above and beyond data security assurances and standards to proactively prevent attacks. In other words, they’re not only talking the talk—they’re walking the walk. Hiya does this so that we can protect our customers’ data and continue to lead the voice performance channel with solutions and technology rooted in integrity. 

 

To learn more about Hiya, our data protections, and SOC 2 Compliance regulations, please reach out [here](https://work.hiya.com/get-a-demo?hsLang=en). 

 

For more frequently asked questions on SOC 2 Compliance, [click the link here](https://www.aicpa.org/content/dam/aicpa/interestareas/frc/assuranceadvisoryservices/downloadabledocuments/56175896-2011-04977-soc-2-commonly-asked-questions-final.pdf). 

 

  

[![banner-hiya-reg](https://blog.hiya.com/hubfs/banner-hiya-reg.jpg)](https://www.hiya.com/products/connect/number-registration)

### Latest Articles ⚡️

- <https://blog.hiya.com/hiya-awarded-16-g2-summer-2026-badges-for-branded-caller-id?hsLang=en>
  
   Hiya awarded 16 G2 Summer 2026 badges for branded caller ID
  
  Lena Prickett
  
  Jul. 9, 2026
- <https://blog.hiya.com/how-canada-is-leading-the-fight-to-stop-bank-scams?hsLang=en>
  
   How Canada is leading the fight to stop bank scams
  
  Stephanie Boulanger
  
  Jun. 26, 2026
- <https://blog.hiya.com/how-to-check-phone-numbers-for-spam-labels?hsLang=en>
  
   How to check phone numbers for spam labels
  
  Michelle Wallace
  
  Jun. 9, 2026

## Related articles

<https://blog.hiya.com/how-canada-is-leading-the-fight-to-stop-bank-scams?hsLang=en> ![](https://blog.hiya.com/hubfs/rogers-toronto-event-blog-hero.webp)

## [How Canada is leading the fight to stop bank scams](https://blog.hiya.com/how-canada-is-leading-the-fight-to-stop-bank-scams?hsLang=en)

Stephanie Boulanger

Jun. 26, 2026

<https://blog.hiya.com/how-to-check-phone-numbers-for-spam-labels?hsLang=en> ![](https://blog.hiya.com/hubfs/Blog_How-to-check-phone-numbers-for-spam-labels_B.webp)

## [How to check phone numbers for spam labels](https://blog.hiya.com/how-to-check-phone-numbers-for-spam-labels?hsLang=en)

Michelle Wallace

Jun. 9, 2026

<https://blog.hiya.com/hiya-and-dna-finland-launch-network-level-call-protection?hsLang=en> ![](https://blog.hiya.com/hubfs/Hiya%20x%20DNA-blog@2x.webp)

## [Hiya and DNA Finland launch network-level call protection](https://blog.hiya.com/hiya-and-dna-finland-launch-network-level-call-protection?hsLang=en)

Stephanie Boulanger

Jun. 2, 2026

[![](https://blog.hiya.com/hubfs/hiya-new-purple.svg)](https://www.hiya.com/)

[![](https://blog.hiya.com/hubfs/linkedin-1.svg)](https://www.linkedin.com/company/hiyainc) [![](https://blog.hiya.com/hubfs/facebook-1.svg)](https://www.facebook.com/hiyainc/)

###### Products

- Connect
- [Number Registration](https://www.hiya.com/products/connect/number-registration)
- [Branded Call](https://www.hiya.com/products/connect/branded-call)
- [View Plans](https://www.hiya.com/products/connect/pricing)
- Protect
- [Spam Analytics](https://www.hiya.com/products/protect/spam-analytics)
- [AI Voice Detection](https://www.hiya.com/products/protect/ai-voice-detection)
- Apps
- [Hiya Spam Blocker](https://www.hiya.com/products/apps/hiya-spam-blocker)
- [Hiya AI Phone](https://www.hiya.com/products/apps/hiya-ai-phone)

###### Solutions

- Company size
- [Enterprise](https://www.hiya.com/solutions/enterprise)
- [Call Centers](https://www.hiya.com/solutions/call-center)
- [Small and Medium](https://www.hiya.com/solutions/businesses)
- Service providers
- [Operators](https://www.hiya.com/solutions/operators)
- [OEMs and technology](https://www.hiya.com/solutions/technology-partners)

###### Considering Hiya?

- [Why Hiya](https://www.hiya.com/why-hiya)
- [How it Works](https://www.hiya.com/how-it-works)
- [Customer Stories](https://www.hiya.com/case-studies)
- [Voice Intelligence Platform](https://www.hiya.com/why-hiya/voice-intelligence-platform)
- [Trust Center](https://www.hiya.com/why-hiya/trust-center)
- [Modern Slavery](https://www.hiya.com/company/modern-slavery)
- [About Hiya](https://www.hiya.com/company/about)
- [Careers: We're hiring!](https://www.hiya.com/company/careers)
- [Contact us](https://www.hiya.com/contact-us)

###### Resources

- [Resource Center](https://www.hiya.com/resources)
- [Partner Program](https://partners.hiya.com/)
- [Get Support](https://hiya.com/support)
- [Developer Docs](https://developer.hiya.com/)
- [Hiya Blog](https://hiya.com/blog)
- [Events](https://www.hiya.com/events)
- [Press Kit](https://www.hiya.com/newsroom#press-kit)

![ANAB](https://blog.hiya.com/hubfs/logo-anab.svg) ![ISO 27001](https://blog.hiya.com/hubfs/logo-iso27017.png) ![AICPA](https://blog.hiya.com/hubfs/logo-aicpa.svg) ![IAF](https://blog.hiya.com/hubfs/logo-iaf.svg)

[Privacy Policy](https://www.hiya.com/legal/privacy) [Terms of Service](https://www.hiya.com/legal/terms-of-service) [App Data Privacy Policy](https://www.hiya.com/legal/app-data-protection-and-privacy-policy)

```json
{
  "@context" : "https://schema.org",
  "@type" : "BlogPosting",
  "author" : {
    "@type" : "Person",
    "name" : "Alicia Marie Beatty",
    "url" : "https://blog.hiya.com/author/alicia-marie-beatty"
  },
  "dateModified" : "2021-08-03T07:18:17.111Z",
  "datePublished" : "2021-04-26T19:11:16.000Z",
  "headline" : "What Is SOC 2 Compliance?",
  "image" : [ "https://blog.hiya.com/hubfs/shutterstock_1095422036.jpg" ],
  "mainEntityOfPage" : {
    "@id" : "https://blog.hiya.com/what-is-soc-2-compliance",
    "@type" : "WebPage"
  },
  "publisher" : {
    "@type" : "Organization",
    "logo" : {
      "@type" : "ImageObject",
      "url" : "https://blog.hiya.com/hubfs/hiya-logo-3.svg"
    },
    "name" : "Hiya Inc."
  }
}
```