> For the complete documentation index, see [llms.txt](https://nexas-ridewiz.gitbook.io/lisaiceland/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://nexas-ridewiz.gitbook.io/lisaiceland/privacy+/hipaa-or-soc2-or-pci/soc-2-type-ii/contabo-soc-2-t2.md).

# Contabo SOC 2 T2

🟢 Smarter AI 🟢

## Our *<mark style="color:purple;">Hosting</mark>* Provider

> ### Our main 100% green compliant infrastructure hosting provider, offers us integrated services aligned with our security standards, confirming they have **SOC 2 Type 2 Reports** available, strong data security. They are **ISO 27001** (ISMS) certified. This certification shows they follows a framework to protect sensitive data, focusing on confidentiality, integrity, and availability.

> ### We have an integrated & systematic approach to managing information security across our operations.&#x20;

{% embed url="<https://contabo.com/en-us/about-us/>" %}

### **What a SOC 2 Type 2 Report Means**

* **Data Security Assurance**
  * It proves we have robust controls in place to protect your sensitive data from unauthorized access.
* **Effectiveness Over Time**
  * Unlike Type 1 (point-in-time), Type 2 covers a period (e.g., 6-12 months), showing controls *operate effectively* consistently.
* **Trust Service Criteria (TSC):**
  * The report covers security, availability, processing integrity, confidentiality, and privacy.&#x20;

### **How to Access It**

1. **Check The Website**
   1. Look for a "Security," "Compliance," or "Certifications" page on their official site.
2. **Contact Support**
   1. Reach out to Contabo's sales or support team directly and request access to their latest SOC 2 Type 2 report.
3. **Review for Exceptions**
   1. When you get it, look for any exceptions mentioned by the auditor, as few vendors are spotless, but the *materiality* of exceptions matters.&#x20;
4. **Contabo SOC 2 Type 2 report is a strong signal of their commitment** to robust information security for your hosted services.&#x20;

### **Key Takeaways**

* **SOC 2 (Type 2)**
  * Contabo provides reports attesting to their controls over customer data (security, availability, etc.) for a period, a big plus for US clients.
* **ISO 27001**
  * They follow this international standard for their Information Security Management System (ISMS), covering comprehensive data management.
* **German Quality**
  * Contabo emphasizes German quality and data center standards, applying these robust practices globally.&#x20;

### **How They Relate**

* **ISO 27001** establishes the *framework* (ISMS) for managing security.
* **SOC 2** provides an *attestation* (report) on controls related to specific Trust Services Criteria (like Security, Availability).
* **Overlap:** There's significant overlap, with ISO 27001 covering foundational security principles also found in SOC 2.&#x20;

### **What This Means for You**

* **Trust & Data Protection**
  * Both certifications/reports demonstrate Contabo's commitment to protecting your data through rigorous, audited processes.
* **Global Standard**
  * ISO 27001 offers international recognition, while SOC 2 is key for North American businesses.&#x20;

For the most current official documentation and specific details, it's always best to check Contabo's dedicated security/compliance pages.&#x20;
