SOC 2 company profile

What SOC 2 provider does Drata use?

See the auditors, compliance platforms, and trust-center services connected to Drata’s SOC 2 program.

SOC 2 statusself attested
Report typeNot publicly specified
Providers found1
Last checked2026-08-29
Providers

Drata’s SOC 2 stack

compliance platform

Drata

Drata is named in Drata's security or compliance materials.

HIPAA landscape has been confusing and tough to navigate. BD’s strong project management and subject matter expertise is helping us make the right decisions to maximize our use of Drata. We are extremely happy and highly recommend BD to other small businesses looking for an experienced Drata partner. 5.0 They made compliance easy for me. When tasked with becoming TX-RAMP certified, I reached out to Bright Defense to help me wade through the

Checked 2026-08-29
View source ↗

Primary compliance evidence

Drata public statement

nce. Get Started 5.0 Fantastic Integrator & Trustworthy Ally Bright Defense (BD) is extremely knowledgeable on information security and compliance. As an early-stage start-up, the SOC2 / HIPAA landscape has been confusing and tough to navigate. BD’s strong project management and subject matter expertise is helping us make the right decisions to maximize our use of Drata. We are extremely happy and highly recommend BD to other small business

Classification: self attested · checked 2026-08-29
Open source ↗
SOC 1SOC 2SOC 3Type IType IIAudit readinessTrust centersVendor riskSecurity evidenceProcurement