Do blog

Início / Blog / SOC 2 – Securing Our Future

SOC 2 – Securing Our Future

SOC 2 - Securing Our Future


Oliver Ray - Managing Director, number8

We have an announcement! number8 is now a SOC 2 compliant organization!

Oliver Ray
Managing Director, number8

Roughly a year ago, our management team discussed impactful investments our organization could make to establish a more secure future for number8. These conversations quickly crystalized into a clearly defined need to implement a standardized framework for control and oversight activities related to our consulting offering.

Our goal was to find the most appropriate audit and control framework for our remote software development consulting services. Through multiple client and prospect interviews we landed on the SOC 2® – SOC for Service Organizations: Trust Services Criteria defined by the American Institute of CPAs (AICPA).

Why SOC 2 for number8?

The SOC 2 standard creates consistent reporting on controls enacted throughout a service organization that are relevant to security, availability, processing integrity, confidentiality, and privacy. These reports are intended to play an important role in the oversight of an organization. They also establish key processes for internal corporate governance and risk management processes, as well as regulatory oversight.

Another advantage of the SOC 2 standard is the ability to continually enhance different controls to suit the needs of clients. At number8, we value the creativity of helping clients get more work done and reduce the barriers to deliver quality software.

Due to the number8 track record of high-quality client interactions, SOC 2 seemed to be the ideal standard for us. There have been no major security incidents in the 11 years number8 has been in operation even as we’ve grown our team to over 200 consultants distributed across 14 countries.

Our long-term commitment to our clients and our consultant’s long-term commitment to development has certainly had an impact on our ability to provide secure processes to our clients. More than 50% of number8 consultants have been in some form of a development role for more than 8 years and 75% of our current consultants have been working with the same client for more than 1 year.

Understand more about the importance of SOC compliance and secure data management within consulting organizations by reading our white paper.

Alignment with Company Values

While working through the preparation of our most recent SOC 2 report, it became clear that the standards and control framework established by the AICPA matched closely with the corporate values defined at number8. We have developed our core values with our clients firmly in mind. Not just as they are today, but how they will evolve in the future. Specifically, 3 of our 8 values were prominent in this decision:

Everyone at number8 is Customer Obsessed – we guarantee our client needs are met. We adopt our clients’ products and challenges as our own.

We always Abrace a transparência – we ensure all work is completed with the highest degree of quality, honesty and integrity. We seek to own our errors, be realistic about the expectations we set, and express courage in asking difficult questions. We are open about everything we do.

Every consultant the comes to number8 Builds for the Future while Prioritizing for the Present É imperativo para o sucesso de nossos clientes considerar o impacto que as decisões diárias têm sobre o futuro de sua organização. Os consultores da number8 consideram o impacto futuro, enquanto aumentam a velocidade hoje.

Interested in learning more about number8’s consulting services?

Conecte-se conosco hoje mesmo ou continue explorando todos os nossos serviços de desenvolvimento de software personalizado e remoto serviços de aumento de equipe.

Vamos trabalhar juntos

Forneça suas informações para conversar com um executivo de contas da number8 sobre suas necessidades de desenvolvimento hoje mesmo e sinta como é ser ouvido antes de ser vendida uma solução.

Permita-nos ajudá-lo a agregar profissionais altamente qualificados, desenvolvedores versáteis para a sua equipe.

Obtenha o manual do Nearshore

O manual do Nearshore

Seu guia definitivo para o desenvolvimento de software nearshore. Aprenda as principais diferenças entre nearshore, offshore e onshore, os processos técnicos que podem tornar os desenvolvedores externos mais produtivos e como escolher o fornecedor nearshore certo com base em suas necessidades.