Skip to content

Trust & Security

How we protect your firm and your data

The answers diligence teams ask for, in one place.

SOC 2 Type II auditedFounded 2019$200B+ client AUM served

SOC 2 Type II

Option One Technologies has completed a SOC 2 Type II audit covering the controls behind our managed services.

Prospective clients can request the report during an engagement under NDA. Current clients can request it from their account manager.

How we protect client data

Least-privilege access, MFA on every administrative account, encryption in transit and at rest, logged privileged sessions, and periodic access reviews.

Security monitoring

Our own environment is monitored by Apollo, our 24x7 security operations center, with the same detection and response playbooks we run for clients.

Incident response

Documented incident response playbooks, defined client notification paths and post-incident reviews. Contractual commitments are set out in each agreement.

Continuity & recovery

Private cloud with East-to-West geo-replication, tested backups and documented recovery objectives for the workloads we host.

Contracts & data processing

Services are governed by our Master Services Agreement and ordering documents, with a Data Processing Addendum available for every engagement.

Next step

Need our SOC 2 report or a security questionnaire answered?

Prospective clients can request it during an engagement. Current clients, contact your account manager.

We value your privacy

We use cookies to enhance your browsing experience, measure how our content is used and, where enabled, tailor advertising. You can accept all, reject all, or choose which categories to allow. Website Privacy Notice