What is SOC 2?
SOC 2 is an audit report, defined by the American Institute of CPAs (AICPA), that describes how a service organization protects customer data. It is assessed against five Trust Services Criteria: security, availability, processing integrity, confidentiality, and privacy. A licensed CPA firm performs the audit and issues the report. It is the certification most US enterprise buyers ask SaaS vendors for.
Source: AICPA & CIMA — SOC 2