We’re proud to announce that Agile Insights has achieved SOC-2 attestation, an independent, third-party validation of the strength of our security controls.
This milestone reflects a commitment we’ve held since day one: that every client who trusts us with their data, from strategy through to delivery, can rely on us to protect it with the same rigour we bring to their Microsoft Data & AI transformation.
What is SOC-2?
SOC-2 (System and Organization Controls 2) is an independent auditing standard developed by the American Institute of Certified Public Accountants (AICPA). It confirms that an organisation’s systems and controls have been examined by a licensed, independent CPA firm and meet the AICPA’s Trust Services Criteria across areas such as:
- Security — protection against unauthorised access, both physical and logical
- Availability — systems are operational and accessible as agreed
- Processing integrity — systems process data completely, accurately, and on time
- Confidentiality — information designated as confidential is protected as committed
- Privacy — personal information is collected, used, retained, and disclosed appropriately
There are two types of SOC-2 report: a Type 1 report assesses whether controls are suitably designed at a specific point in time, while a Type 2 report goes further, assessing both the design and the operating effectiveness of those controls over a defined period. A SOC-2 report is intended for parties with a detailed understanding of an organisation’s systems — such as clients, partners, and their auditors — rather than for general public distribution.
Why This Matters for Our Clients
As a Microsoft Data & AI partner, we are frequently trusted with sensitive, high-value data — from enterprise analytics environments to AI-driven decision systems. SOC-2 attestation gives our clients and partners independent confidence that:
- Our internal controls have been rigorously tested and verified by an independent auditor
- We maintain enterprise-grade safeguards around data security, availability, and confidentiality
- We hold ourselves accountable to the same standards we help our clients achieve
This attestation sits alongside our existing credentials, including our Microsoft Solutions Partner status and ISO/IEC 27001 certification, as part of a broader commitment to operating as a secure, trusted, and accountable partner in every engagement.
What’s Next
SOC-2 attestation isn’t a one-off achievement, it requires ongoing monitoring, review, and re-certification to maintain. We’ll continue to invest in the people, processes, and technology that keep our clients’ data secure as we grow.
If you’d like to learn more about our approach to data security, governance, or this certification, get in touch with our team.